Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
be154558 by Moritz Muehlenhoff at 2019-08-05T11:37:10Z
tika, docker fixed
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -4248,7 +4248,7 @@ CVE-2019-13511
CVE-2019-13510
RESERVED
CVE-2019-13509 (In Docker CE and EE before 18.09.8 (as well as Docker EE
before 17.06. ...)
- - docker.io <unfixed> (bug #932673)
+ - docker.io 18.09.1+dfsg1-8 (bug #932673)
[buster] - docker.io <no-dsa> (Minor issue)
CVE-2019-13508
RESERVED
@@ -5164,7 +5164,7 @@ CVE-2019-13140
CVE-2019-13139 [command injection due to a missing validation of the git ref
command]
RESERVED
[experimental] - docker.io 18.09.5+dfsg1-1
- - docker.io <unfixed> (bug #933002)
+ - docker.io 18.09.1+dfsg1-8 (bug #933002)
[buster] - docker.io <no-dsa> (Minor issue)
NOTE: https://github.com/moby/moby/pull/38944
NOTE:
https://staaldraad.github.io/post/2019-07-16-cve-2019-13139-docker-build/
@@ -13149,10 +13149,10 @@ CVE-2019-10096
CVE-2019-10095
RESERVED
CVE-2019-10094 (A carefully crafted package/compressed file that, when
unzipped/uncomp ...)
- - tika <unfixed> (bug #933746)
+ - tika 1.22-1 (bug #933746)
NOTE: https://www.openwall.com/lists/oss-security/2019/08/02/4
CVE-2019-10093 (In Apache Tika 1.19 to 1.21, a carefully crafted 2003ml or
2006ml file ...)
- - tika <unfixed> (bug #933745)
+ - tika 1.22-1 (bug #933745)
NOTE: https://www.openwall.com/lists/oss-security/2019/08/02/3
CVE-2019-10092
RESERVED
@@ -13163,7 +13163,7 @@ CVE-2019-10090
CVE-2019-10089
RESERVED
CVE-2019-10088 (A carefully crafted or corrupt zip file can cause an OOM in
Apache Tik ...)
- - tika <unfixed> (bug #933744)
+ - tika 1.22-1 (bug #933744)
NOTE: https://www.openwall.com/lists/oss-security/2019/08/02/2
CVE-2019-10087
RESERVED
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/be154558319a4b3508476cf0418f4ac50904f51b
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/be154558319a4b3508476cf0418f4ac50904f51b
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits