Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits: 97ec6f0f by Markus Koschany at 2022-08-02T19:46:51+02:00 CVE-2021-3629,undertow: fixed in unstable according to Red Hat this issue was fixed in version 2.2.11. The first fixing version in Debian was 2.2.12. No further details are available See https://bugzilla.redhat.com/show_bug.cgi?id=1977362 - - - - - e06d1892 by Markus Koschany at 2022-08-02T19:46:52+02:00 CVE-2022-1319,undertow: fixed in unstable fixed in 2.2.17-1 See https://access.redhat.com/errata/RHSA-2022:4918 and the original Red Hat bug report https://bugzilla.redhat.com/show_bug.cgi?id=2073890 No further details are available - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -22181,7 +22181,7 @@ CVE-2022-29064 RESERVED CVE-2022-1319 RESERVED - - undertow <unfixed> (bug #1016448) + - undertow 2.2.17-1 (bug #1016448) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2073890 CVE-2022-1318 (Hills ComNav version 3002-19 suffers from a weak communication channel ...) NOT-FOR-US: Hills ComNav @@ -75171,7 +75171,7 @@ CVE-2021-3630 (An out-of-bounds write vulnerability was found in DjVuLibre in DJ NOTE: https://sourceforge.net/p/djvu/bugs/302/ NOTE: https://sourceforge.net/p/djvu/djvulibre-git/ci/7b0ef20690e08f1fe124aebbf42f6310e2f40f81/ CVE-2021-3629 (A flaw was found in Undertow. A potential security issue in flow contr ...) - - undertow <unfixed> (bug #1016448) + - undertow 2.2.12-1 (bug #1016448) NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1977362 NOTE: Make sure to also address followup tracked as CVE-2022-1259: NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2072339 View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/310cf129cf1d344144ff53fc245aa925f747bf7e...e06d18926b1aef65234c1ea5faa7dd24f2b0eb3d -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/310cf129cf1d344144ff53fc245aa925f747bf7e...e06d18926b1aef65234c1ea5faa7dd24f2b0eb3d You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
