[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 2821-1] axis security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian LTS Advisory DLA-2821-1                debian-lts@lists.debian.org
https://www.debian.org/lts/security/                    Thorsten Alteholz
November 17, 2021                             https://wiki.debian.org/LTS
- -------------------------------------------------------------------------

Package        : axis
Version        : 1.4-25+deb9u1
CVE ID         : CVE-2018-8032


An issue has been found in axis, a SOAP implementation in Java.
The issue is related to a cross-site scripting (XSS) attack in the default servlet/services.


For Debian 9 stretch, this problem has been fixed in version
1.4-25+deb9u1.

We recommend that you upgrade your axis packages.

For the detailed security status of axis please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/axis

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

-----BEGIN PGP SIGNATURE-----
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=gyq4
-----END PGP SIGNATURE-----


Reply to: