From 2f8f765dcf0ff7beb2eefc27b84c4ff431c67b43 Mon Sep 17 00:00:00 2001 From: Thorsten Alteholz Date: Mon, 29 Nov 2021 00:12:16 +0100 Subject: mark CVE-2021-42717 as postponed --- data/CVE/2021.list | 1 + 1 file changed, 1 insertion(+) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index 3a2527584c..30ea3cb6c7 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -3560,6 +3560,7 @@ CVE-2021-42717 [ModSecurity DoS Vulnerability in JSON Parsing] RESERVED - modsecurity 3.0.6-1 - modsecurity-apache 2.9.5-1 + [stretch] - modsecurity-apache (revisit when/if fixed upstream) NOTE: https://github.com/SpiderLabs/ModSecurity/issues/2647 NOTE: https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/modsecurity-dos-vulnerability-in-json-parsing-cve-2021-42717/ CVE-2021-42716 (An issue was discovered in stb stb_image.h 2.27. The PNM loader incorr ...) -- cgit v1.2.3