Markus Koschany pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
19211678 by Markus Koschany at 2020-01-05T19:32:08+01:00
CVE-2019-12409,lucene-solr: Debian is not affected

Vulnerable code was introduced later.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -33970,7 +33970,7 @@ CVE-2019-12411
 CVE-2019-12410 (While investigating UBSAN errors in 
https://github.com/apache/arrow/pu ...)
        NOT-FOR-US: Apache Arrow
 CVE-2019-12409 (The 8.1.1 and 8.2.0 releases of Apache Solr contain an 
insecure settin ...)
-       - lucene-solr <undetermined>
+       - lucene-solr <not-affected> (Vulnerable code was introduced later)
        NOTE: 
https://lists.apache.org/thread.html/6640c7e370fce2b74e466a605a46244ccc40666ad9e3064a4e04a85d@%3Csolr-user.lucene.apache.org%3E
        TODO: check
 CVE-2019-12408 (It was discovered that the C++ implementation (which underlies 
the R,  ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/192116789d1c2db7ac6514a898a9d0952e86177f

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/192116789d1c2db7ac6514a898a9d0952e86177f
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to