diff options
author | Moritz Mühlenhoff <jmm@debian.org> | 2024-04-16 17:54:30 +0200 |
---|---|---|
committer | Moritz Mühlenhoff <jmm@debian.org> | 2024-04-16 17:54:30 +0200 |
commit | 12ebff459dc96ee5ddfd4ed2e2183daaa264ed8f (patch) | |
tree | 5fa9b6798d2da5fe20ae6bb6c753a3f83e6a3fa6 | |
parent | 8ad138db3ccf6faffc20bc288ff087cb8e4728f5 (diff) |
zk spu
-rw-r--r-- | data/CVE/list | 2 | ||||
-rw-r--r-- | data/next-point-update.txt | 2 |
2 files changed, 4 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list index dc96a98635..d72f974005 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -9764,6 +9764,8 @@ CVE-2024-28752 (A SSRF vulnerability using the Aegis DataBinding in versions of NOT-FOR-US: Apache CXF CVE-2024-23944 (Information disclosure in persistent watchers handling in Apache ZooKe ...) - zookeeper 3.9.2-1 (bug #1066947) + [bookworm] - zookeeper <no-dsa> (Minor issue) + [bullseye] - zookeeper <no-dsa> (Minor issue) NOTE: https://www.openwall.com/lists/oss-security/2024/03/14/2 NOTE: https://issues.apache.org/jira/browse/ZOOKEEPER-4799 NOTE: Fixed by: https://github.com/apache/zookeeper/commit/65b91d2d9a56157285c2a86b106e67c26520b01d (release-3.8.4-0) diff --git a/data/next-point-update.txt b/data/next-point-update.txt index 841d062707..f4fe47cf01 100644 --- a/data/next-point-update.txt +++ b/data/next-point-update.txt @@ -108,3 +108,5 @@ CVE-2021-31684 [bookworm] - json-smart 2.2-2+deb12u1 CVE-2023-1370 [bookworm] - json-smart 2.2-2+deb12u1 +CVE-2024-23944 + [bookworm] - zookeeper 3.8.0-11+deb12u2 |