Author: carnil Date: 2017-02-17 21:18:36 +0000 (Fri, 17 Feb 2017) New Revision: 49037
Modified: data/CVE/list Log: Mark CVE-2017-6056 as fixed for tomcat8 in 8.0.21-2 This is the first version in unstable after a 8.0.19 upstream. According to https://bz.apache.org/bugzilla/show_bug.cgi?id=57544#c5 this if fixed for the 8.0.x series for 8.0.19 onwards. Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-02-17 21:13:47 UTC (rev 49036) +++ data/CVE/list 2017-02-17 21:18:36 UTC (rev 49037) @@ -199,7 +199,7 @@ RESERVED CVE-2017-6056 (It was discovered that a programming error in the processing of HTTPS ...) {DSA-3788-1 DSA-3787-1 DLA-823-1} - - tomcat8 <unfixed> (bug #851304) + - tomcat8 8.0.21-2 (bug #851304) - tomcat7 7.0.72-3 (bug #854551) NOTE: Since 7.0.72-3, src:tomcat7 only builds the Servlet API NOTE: https://bz.apache.org/bugzilla/show_bug.cgi?id=57544 _______________________________________________ Secure-testing-commits mailing list [email protected] http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

