From: Krzysztof Opasiak Date: Wed, 5 Jun 2019 00:10:17 +0000 (+0200) Subject: Document OJSI-80 (CVE-2019-12119) vulnerability X-Git-Tag: 1.6.1~328 X-Git-Url: https://gerrit.onap.org/r/gitweb?a=commitdiff_plain;h=d2edceed780c9f36652ab56f6888b626dff5a378;p=sdc.git Document OJSI-80 (CVE-2019-12119) vulnerability Issue-ID: OJSI-80 Signed-off-by: Krzysztof Opasiak Change-Id: Ic4707b3eb536e3ad95d85aaf9570c271d67473e1 --- diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 9d6e725a2b..dcfe042549 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -106,6 +106,7 @@ Security Notes - CVE-2019-12116 [`OJSI-77 `__\ ] - demo-sdc-sdc-fe exposes JDWP on port 6000 which allows for arbitrary code execution - CVE-2019-12117 [`OJSI-78 `__\ ] - demo-sdc-sdc-onboarding-be exposes JDWP on port 4001 which allows for arbitrary code execution - CVE-2019-12118 [`OJSI-79 `__\ ] - demo-sdc-sdc-wfd-be exposes JDWP on port 7001 which allows for arbitrary code execution +- CVE-2019-12119 [`OJSI-80 `__\ ] - demo-sdc-sdc-wfd-fe exposes JDWP on port 7000 which allows for arbitrary code execution *Known Vulnerabilities in Used Modules*