summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorMoritz Mühlenhoff <jmm@debian.org>2024-04-16 17:54:30 +0200
committerMoritz Mühlenhoff <jmm@debian.org>2024-04-16 17:54:30 +0200
commit12ebff459dc96ee5ddfd4ed2e2183daaa264ed8f (patch)
tree5fa9b6798d2da5fe20ae6bb6c753a3f83e6a3fa6
parent8ad138db3ccf6faffc20bc288ff087cb8e4728f5 (diff)
zk spu
-rw-r--r--data/CVE/list2
-rw-r--r--data/next-point-update.txt2
2 files changed, 4 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index dc96a98635..d72f974005 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -9764,6 +9764,8 @@ CVE-2024-28752 (A SSRF vulnerability using the Aegis DataBinding in versions of
NOT-FOR-US: Apache CXF
CVE-2024-23944 (Information disclosure in persistent watchers handling in Apache ZooKe ...)
- zookeeper 3.9.2-1 (bug #1066947)
+ [bookworm] - zookeeper <no-dsa> (Minor issue)
+ [bullseye] - zookeeper <no-dsa> (Minor issue)
NOTE: https://www.openwall.com/lists/oss-security/2024/03/14/2
NOTE: https://issues.apache.org/jira/browse/ZOOKEEPER-4799
NOTE: Fixed by: https://github.com/apache/zookeeper/commit/65b91d2d9a56157285c2a86b106e67c26520b01d (release-3.8.4-0)
diff --git a/data/next-point-update.txt b/data/next-point-update.txt
index 841d062707..f4fe47cf01 100644
--- a/data/next-point-update.txt
+++ b/data/next-point-update.txt
@@ -108,3 +108,5 @@ CVE-2021-31684
[bookworm] - json-smart 2.2-2+deb12u1
CVE-2023-1370
[bookworm] - json-smart 2.2-2+deb12u1
+CVE-2024-23944
+ [bookworm] - zookeeper 3.8.0-11+deb12u2

© 2014-2024 Faster IT GmbH | imprint | privacy policy