Skip to content
Commits on Source (2)
......@@ -17718,7 +17718,7 @@ CVE-2019-17560
CVE-2019-17559
RESERVED
CVE-2019-17558 (Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code ...)
- lucene-solr <undetermined>
- lucene-solr <unfixed> (unimportant)
NOTE: https://www.openwall.com/lists/oss-security/2019/12/30/1
NOTE: https://issues.apache.org/jira/browse/SOLR-13971
NOTE: https://issues.apache.org/jira/browse/SOLR-14025
......@@ -33972,7 +33972,6 @@ CVE-2019-12410 (While investigating UBSAN errors in https://github.com/apache/ar
CVE-2019-12409 (The 8.1.1 and 8.2.0 releases of Apache Solr contain an insecure settin ...)
- lucene-solr <not-affected> (Vulnerable code was introduced later)
NOTE: https://lists.apache.org/thread.html/6640c7e370fce2b74e466a605a46244ccc40666ad9e3064a4e04a85d@%3Csolr-user.lucene.apache.org%3E
TODO: check
CVE-2019-12408 (It was discovered that the C++ implementation (which underlies the R, ...)
NOT-FOR-US: Apache Arrow
CVE-2019-12407 (On Apache JSPWiki, up to version 2.11.0.M4, a carefully crafted plugin ...)