Document OJSI-79 (CVE-2019-12118) vulnerability 10/89310/1
authorKrzysztof Opasiak <k.opasiak@samsung.com>
Wed, 5 Jun 2019 00:09:21 +0000 (02:09 +0200)
committerKrzysztof Opasiak <k.opasiak@samsung.com>
Wed, 5 Jun 2019 00:09:21 +0000 (02:09 +0200)
Issue-ID: OJSI-79
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I077e40fb42b915fffbd8bd1779ef02fd60c2758c

docs/release-notes.rst

index c03516a..9d6e725 100644 (file)
@@ -105,6 +105,7 @@ Security Notes
 -  CVE-2019-12115 [`OJSI-76 <https://jira.onap.org/browse/OJSI-76>`__\ ] - demo-sdc-sdc-be exposes JDWP on port 4000 which allows for arbitrary code execution
 -  CVE-2019-12116 [`OJSI-77 <https://jira.onap.org/browse/OJSI-77>`__\ ] - demo-sdc-sdc-fe exposes JDWP on port 6000 which allows for arbitrary code execution
 -  CVE-2019-12117 [`OJSI-78 <https://jira.onap.org/browse/OJSI-78>`__\ ] - demo-sdc-sdc-onboarding-be exposes JDWP on port 4001 which allows for arbitrary code execution
+-  CVE-2019-12118 [`OJSI-79 <https://jira.onap.org/browse/OJSI-79>`__\ ] - demo-sdc-sdc-wfd-be exposes JDWP on port 7001 which allows for arbitrary code execution
 
 *Known Vulnerabilities in Used Modules*