git: 3b2fc68e0986 - main - security/vuxml: Update 2025-01-13 keycloak entry to fix `make validate`
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Tue, 14 Jan 2025 21:10:16 UTC
The branch main has been updated by jrm: URL: https://cgit.FreeBSD.org/ports/commit/?id=3b2fc68e0986398d5f8f0dbd65c682ee281442e9 commit 3b2fc68e0986398d5f8f0dbd65c682ee281442e9 Author: Joseph Mingrone <jrm@FreeBSD.org> AuthorDate: 2025-01-14 21:00:15 +0000 Commit: Joseph Mingrone <jrm@FreeBSD.org> CommitDate: 2025-01-14 21:07:45 +0000 security/vuxml: Update 2025-01-13 keycloak entry to fix `make validate` Reported by: garga Sponsored by: The FreeBSD Foundation --- security/vuxml/vuln/2025.xml | 26 +++++++++++++------------- 1 file changed, 13 insertions(+), 13 deletions(-) diff --git a/security/vuxml/vuln/2025.xml b/security/vuxml/vuln/2025.xml index 31f64ee98d38..8fda2190e48a 100644 --- a/security/vuxml/vuln/2025.xml +++ b/security/vuxml/vuln/2025.xml @@ -37,25 +37,25 @@ </dates> </vuln> - <vuln vid="7d7a28cd-7f5a-450a-852f-c49aaab3fa7e"> + <vuln vid="5e2bd238-d2bb-11ef-bc0e-1c697a616631"> <topic>keycloak -- Multiple security fixes</topic> <affects> <package> - <name>keycloak</name> - <range><lt>26.0.8</lt></range> + <name>keycloak</name> + <range><lt>26.0.8</lt></range> </package> </affects> <description> - <body xmlns="http://www.w3.org/1999/xhtml"> - <p>Keycloak reports:</p> - <blockquote cite="https://www.keycloak.org/2024/11/keycloak-2606-released.html"> - <p>This update includes 2 security fixes:</p> - <ul> - <li>CVE-2024-11734: Unrestricted admin use of system and environment variables</li> - <li>CVE-2024-11736: Denial of Service in Keycloak Server via Security Headers</li> - </ul> - </blockquote> - </body> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>Keycloak reports:</p> + <blockquote cite="https://www.keycloak.org/2024/11/keycloak-2606-released.html"> + <p>This update includes 2 security fixes:</p> + <ul> + <li>CVE-2024-11734: Unrestricted admin use of system and environment variables</li> + <li>CVE-2024-11736: Denial of Service in Keycloak Server via Security Headers</li> + </ul> + </blockquote> + </body> </description> <references> <cvename>CVE-2024-11734</cvename>