From 547d95ea70a5312bfa9a116b9d290893382ff752 Mon Sep 17 00:00:00 2001 From: Krzysztof Opasiak Date: Sat, 5 Oct 2019 22:21:12 +0200 Subject: [PATCH 1/1] Remove OJSI-176 and OJSI-177 from release notes Both tickets mentioned in the title are false positives. In OJSI jira they are marked as "Not a bug" thus they shouldn't be considered as "fixed security issues" Issue-ID: OJSI-176 Issue-ID: OJSI-177 Signed-off-by: Krzysztof Opasiak Change-Id: I4d3c0939b5df68ed42e334d492a2751143b41e39 --- docs/release-notes.rst | 2 -- 1 file changed, 2 deletions(-) diff --git a/docs/release-notes.rst b/docs/release-notes.rst index b317feb37..f265df56b 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -62,8 +62,6 @@ The El Alto added the following feature, bug fixes and security enhancements: - `OJSI-104 `_ - appc exposes plain text HTTP endpoint using port 30211 - `OJSI-113 `_ - appc exposes plain text HTTP endpoint using port 30230 - `OJSI-146 `_ - appc-cdt exposes plain text HTTP endpoint using port 30289 - - `OJSI-176 `_ - dev-appc-appc exposes JDWP on port 1830 which allows for arbitrary code execution - - `OJSI-177 `_ - dev-appc-appc exposes JDWP on port 8101 which allows for arbitrary code execution - `OJSI-185 `_ - appc exposes ssh service on port 30231 Version: 1.5.3 -- 2.16.6