Bug#924598: checkstyle: CVE-2019-9658: loads external DTDs by default

2019-03-29 Thread Moritz Mühlenhoff
On Thu, Mar 14, 2019 at 09:03:13PM +0100, Salvatore Bonaccorso wrote: > [0] https://security-tracker.debian.org/tracker/CVE-2019-9658 > https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9658 > [1] https://github.com/checkstyle/checkstyle/issues/6474 > [2]

Bug#924598: checkstyle: CVE-2019-9658: loads external DTDs by default

2019-03-14 Thread Salvatore Bonaccorso
Source: checkstyle Version: 8.15-1 Severity: important Tags: security upstream Hi, The following vulnerability was published for checkstyle. CVE-2019-9658[0]: | Checkstyle before 8.18 loads external DTDs by default. If you fix the vulnerability please also make sure to include the CVE (Common