From d15c5220e6e108d6c72b1ced36505b022ea860c7 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sat, 8 Aug 2020 13:44:16 +0200 Subject: Track unstable fixes for apache2 issues --- data/CVE/2020.list | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/data/CVE/2020.list b/data/CVE/2020.list index 8548dd8cba..c2fb754a5f 100644 --- a/data/CVE/2020.list +++ b/data/CVE/2020.list @@ -12357,7 +12357,7 @@ CVE-2020-11995 CVE-2020-11994 (Server-Side Template Injection and arbitrary file disclosure on Camel ...) NOT-FOR-US: Apache Camel CVE-2020-11993 (Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enab ...) - - apache2 + - apache2 2.4.46-1 NOTE: https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2020-11993 NOTE: https://www.openwall.com/lists/oss-security/2020/08/07/3 NOTE: https://svn.apache.org/r1879642 @@ -12391,7 +12391,7 @@ CVE-2020-11985 (IP address spoofing when proxying using mod_remoteip and mod_rew NOTE: Upstream patch: https://svn.apache.org/r1688399 NOTE: https://github.com/apache/httpd/commit/dd6c959b3625048ee15ba4ad72e6cb7bcaf91020 CVE-2020-11984 (Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure an ...) - - apache2 + - apache2 2.4.46-1 NOTE: https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2020-11984 NOTE: https://www.openwall.com/lists/oss-security/2020/08/07/1 NOTE: https://svn.apache.org/r1880251 @@ -18581,7 +18581,7 @@ CVE-2020-9492 CVE-2020-9491 RESERVED CVE-2020-9490 (Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted valu ...) - - apache2 + - apache2 2.4.46-1 NOTE: https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2020-9490 NOTE: https://www.openwall.com/lists/oss-security/2020/08/07/4 NOTE: https://svn.apache.org/r1880396 -- cgit v1.2.3