Bug#922242: lucene-solr: CVE-2017-3164

2019-02-19 Thread Markus Koschany
Am 19.02.19 um 17:40 schrieb Moritz Mühlenhoff: > On Fri, Feb 15, 2019 at 11:21:13AM +0100, Markus Koschany wrote: [...] >> >> Upstream solved this problem by adding a new whitelist option for nodes >> and shards and what they can request. In the latest version Zookeeper >> would keep track of

Bug#922242: lucene-solr: CVE-2017-3164

2019-02-19 Thread Moritz Mühlenhoff
On Fri, Feb 15, 2019 at 11:21:13AM +0100, Markus Koschany wrote: > On Wed, 13 Feb 2019 17:43:43 +0100 Salvatore Bonaccorso > wrote: > > Source: lucene-solr > > Version: 3.6.2+dfsg-16 > > Severity: important > > Tags: security upstream > > Forwarded:

Bug#922242: lucene-solr: CVE-2017-3164

2019-02-15 Thread Markus Koschany
On Wed, 13 Feb 2019 17:43:43 +0100 Salvatore Bonaccorso wrote: > Source: lucene-solr > Version: 3.6.2+dfsg-16 > Severity: important > Tags: security upstream > Forwarded: https://issues.apache.org/jira/browse/SOLR-12770 > Control: found -1 3.6.2+dfsg-10+deb9u2 > Control: found -1 3.6.2+dfsg-10 >

Bug#922242: lucene-solr: CVE-2017-3164

2019-02-13 Thread Salvatore Bonaccorso
Source: lucene-solr Version: 3.6.2+dfsg-16 Severity: important Tags: security upstream Forwarded: https://issues.apache.org/jira/browse/SOLR-12770 Control: found -1 3.6.2+dfsg-10+deb9u2 Control: found -1 3.6.2+dfsg-10 Hi, The following vulnerability was published for lucene-solr.