Debian Security Advisory
DSA-2963-1 lucene-solr -- security update
- Date Reported:
- 17 Jun 2014
- Affected Packages:
- lucene-solr
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2013-6397, CVE-2013-6407, CVE-2013-6408.
- More information:
-
Multiple vulnerabilities were found in Solr, an open source enterprise search server based on Lucene, resulting in information disclosure or code execution.
For the stable distribution (wheezy), these problems have been fixed in version 3.6.0+dfsg-1+deb7u1.
For the testing distribution (jessie), these problems have been fixed in version 3.6.2+dfsg-2.
For the unstable distribution (sid), these problems have been fixed in version 3.6.2+dfsg-2.
We recommend that you upgrade your lucene-solr packages.