Bug 428016 (CVE-2007-6672)
Summary: | CVE-2007-6672 Jetty directory traversal | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Red Hat Product Security <security-response-team> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED NOTABUG | QA Contact: | |
Severity: | low | Docs Contact: | |
Priority: | low | ||
Version: | unspecified | CC: | jjohnstn |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6672 | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2010-12-22 23:45:21 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 428017, 428018 | ||
Bug Blocks: |
Description
Lubomir Kundrak
2008-01-08 18:02:08 UTC
The version of jetty in fedora is jetty5, not jetty6. From the information provided, it is only 6.1.5 and 6.1.6 and thus does not apply. This bug should be closed. I will do so if I do not hear a reply as to why it should not be closed. Reporter changed to security-response-team by request of Jay Turner. Current Fedora has 6.1.21 or newer which is not affected by this flaw. |