Information on source package libspring-security-2.0-java

Available versions

ReleaseVersion
jessie2.0.7.RELEASE-3+deb8u2

Open issues

BugjessieDescription
CVE-2024-22257vulnerableIn Spring Security, versions 5.7.x prior to 5.7.12, 5.8.x prior to 5. ...
CVE-2024-22234vulnerableIn Spring Security, versions 6.1.x prior to 6.1.7 and versions 6.2.x p ...
CVE-2023-34035vulnerableSpring Security versions 5.8prior to 5.8.5, 6.0prior to 6.0.5,and 6.1p ...
CVE-2023-34034vulnerableUsing "**" as a pattern in Spring Security configuration for WebFlux ...
CVE-2022-31692vulnerableSpring Security, versions 5.7 prior to 5.7.5 and 5.6 prior to 5.6.9 co ...
CVE-2022-31690vulnerableSpring Security, versions 5.7 prior to 5.7.5, and 5.6 prior to 5.6.9, ...
CVE-2022-22978vulnerableIn spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and olde ...
CVE-2022-22976vulnerableSpring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, a ...
CVE-2021-22119vulnerableSpring Security versions 5.5.x prior to 5.5.1, 5.4.x prior to 5.4.7, 5 ...
CVE-2018-15801vulnerable (no DSA)Spring Security versions 5.1.x prior to 5.1.2 contain an authorization ...
CVE-2018-1199vulnerableSpring Security (Spring Security 4.1.x before 4.1.5, 4.2.x before 4.2. ...

Resolved issues

BugDescription
CVE-2020-5408Spring Security versions 5.3.x prior to 5.3.2, 5.2.x prior to 5.2.4, 5 ...
CVE-2020-5407Spring Security versions 5.2.x prior to 5.2.4 and 5.3.x prior to 5.3.2 ...
CVE-2019-11272Spring Security, versions 4.2.x up to 4.2.12, and older unsupported ve ...
CVE-2019-3795Spring Security versions 4.2.x prior to 4.2.12, 5.0.x prior to 5.0.12, ...
CVE-2018-1258Spring Framework version 5.0.5 when used in combination with any versi ...
CVE-2011-2894Spring Framework 3.0.0 through 3.0.5, Spring Security 3.0.0 through 3. ...
CVE-2011-2732CRLF injection vulnerability in the logout functionality in VMware Spr ...
CVE-2011-2731Race condition in the RunAsManager mechanism in VMware SpringSource Sp ...

Security announcements

DSA / DLADescription
DLA-1848-1libspring-security-2.0-java - security update
DLA-1794-1libspring-security-2.0-java - security update

Search for package or bug name: Reporting problems