Scientific Linux alert SLSA-2019:3067-1 (jss)
| From: | Farhan Ahmed <fahmed@fnal.gov> | |
| To: | scientific-linux-errata@listserv.fnal.gov | |
| Subject: | Security ERRATA Important: jss on SL7.x x86_64 | |
| Date: | Wed, 16 Oct 2019 17:10:22 -0000 | |
| Message-ID: | <20191016171022.4078.78996@slpackages.fnal.gov> |
Synopsis: Important: jss security update Advisory ID: SLSA-2019:3067-1 Issue Date: 2019-10-16 CVE Numbers: None -- Security Fix(es): * JSS: OCSP policy "Leaf and Chain" implicitly trusts the root certificate (CVE-2019-14823) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. -- SL7 x86_64 jss-4.4.6-3.el7_7.x86_64.rpm jss-debuginfo-4.4.6-3.el7_7.x86_64.rpm jss-javadoc-4.4.6-3.el7_7.x86_64.rpm - Scientific Linux Development Team
