[ 
https://issues.apache.org/jira/browse/CASSANDRA-20504?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Stefan Miklosovic updated CASSANDRA-20504:
------------------------------------------
          Fix Version/s: 4.0.18
                         4.1.9
                         5.0.4
                         5.1
                             (was: 5.x)
                             (was: 4.0.x)
                             (was: 4.1.x)
                             (was: 5.0.x)
    Source Control Link: 
https://github.com/apache/cassandra/commit/73f0e2e4017397bfdcf16b7e333c1279ada57c74
             Resolution: Fixed
                 Status: Resolved  (was: Ready to Commit)

> Handle CVE-2024-47535 and CVE-2025-25193
> ----------------------------------------
>
>                 Key: CASSANDRA-20504
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-20504
>             Project: Apache Cassandra
>          Issue Type: Task
>          Components: Build
>            Reporter: Stefan Miklosovic
>            Assignee: Stefan Miklosovic
>            Priority: Normal
>             Fix For: 4.0.18, 4.1.9, 5.0.4, 5.1
>
>          Time Spent: 20m
>  Remaining Estimate: 0h
>
> These seem to be exploitable on Windows only, hence we can suppress.
> https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47535
> https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-25193
> trunk - suppress CVE-2024-47535 and CVE-2025-25193
> 5.0 - suppress CVE-2024-47535 and CVE-2025-25193
> 4.1 - suppress CVE-2025-25193
> 4.0 - suppress CVE-2025-25193



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscr...@cassandra.apache.org
For additional commands, e-mail: commits-h...@cassandra.apache.org

Reply via email to