Skip to content
Failed

Changes

Summary

  1. [GovWayCore] (commit: 9f545f9) (details)
Commit 9f545f9aeb58b2439c826958b4f51d7160570643 by Andrea Poli
[GovWayCore]
Sono state risolte le seguenti vulnerabilità relative ai jar di terza parte:
- CVE-2024-30172, CVE-2024-30171, CVE-2024-29857:
                  aggiornata libreria 'org.bouncycastle:bcprov-ext-jdk18on' alla versione 1.78
                  aggiornata libreria 'org.bouncycastle:bcpkix-jdk18on' alla versione 1.78.1
                  aggiornata libreria 'org.bouncycastle:bcutil-jdk18on' alla versione 1.78.1
- CVE-2024-22262: aggiornata libreria 'org.springframework:*' alla versione 5.3.34
(commit: 9f545f9)
The file was addedthird-party-licenses/spring/spring-beans-5.3.34/license.txt
The file was modified protocolli/spcoop/testsuite/build.xml (diff)
The file was modified resources/doc/src/manuali/validation-process/staticCodeAnalysis/sonarqube/maven.rst (diff)
The file was addedthird-party-licenses/spring/spring-core-5.3.34/license.txt
The file was modified resources/doc/src/manuali/vulnerability-management/securityAdvisory/index.rst (diff)
The file was modified core/src/META-INF/jboss-deployment-structure.xml.wildfly (diff)
The file was removedthird-party-licenses/testsuite/spring-jdbc-5.3.33/license.txt
The file was removedthird-party-licenses/spring/spring-beans-5.3.33/license.txt
The file was modified resources/doc/src/manuali/scenari/modipa/audit_01/erogazione_modipa_rest/esecuzione.rst (diff)
The file was addedthird-party-licenses/security/bcpkix-jdk18on-1.78.1/license.txt
The file was removedthird-party-licenses/security/bcutil-jdk18on-1.74/license.html
The file was modified mvn/dependencies/security/pom.xml (diff)
The file was addedthird-party-licenses/log/slf4j-api-2.0.3-gov4j-1/mit-license.txt
The file was removedthird-party-licenses/spring/spring-expression-5.3.33/license.txt
The file was addedthird-party-licenses/log/log4j-api-2.19.0/LICENSE
The file was removedthird-party-licenses/spring/spring-context-5.3.33/license.txt
The file was addedthird-party-licenses/spring/spring-context-5.3.34/license.txt
The file was modified core/src/META-INF/jboss-deployment-structure.xml.jboss7 (diff)
The file was modified resources/doc/src/manuali/console/profiloApiGateway/rateLimiting/headerXRateLimit/header.rst (diff)
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-29857.rst
The file was modified protocolli/trasparente/testsuite/karate/build.xml (diff)
The file was modified mvn/dependencies/owasp/falsePositives/console-back-office.xml (diff)
The file was modified tools/command_line_interfaces/config_loader/build.xml (diff)
The file was modified mvn/dependencies/owasp/falsePositives/spring-web.xml (diff)
The file was removedthird-party-licenses/security/bcpkix-jdk18on-1.74/license.html
The file was modified resources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/index.rst (diff)
The file was removedthird-party-licenses/security/bcpkix-jdk18on-1.74/license.txt
The file was removedthird-party-licenses/spring/spring-web-5.3.33/license.txt
The file was addedthird-party-licenses/spring/spring-context-support-5.3.34/license.txt
The file was addedthird-party-licenses/log/slf4j-api-2.0.3-gov4j-1/mit-license.php
The file was modified core/src/META-INF/jboss-deployment-structure.xml.wildfly2 (diff)
The file was removedthird-party-licenses/spring/spring-aspects-5.3.33/license.txt
The file was modified testsuite/src/WEB-INF/jboss-deployment-structure.xml.wildfly2 (diff)
The file was addedthird-party-licenses/spring/spring-web-5.3.34/license.txt
The file was modified testsuite/ant/openspcoop2-testsuite-war.xml (diff)
The file was addedthird-party-licenses/spring/spring-orm-5.3.34/license.txt
The file was addedthird-party-licenses/spring/spring-aspects-5.3.34/license.txt
The file was modified core/ant/openspcoop2-ear.xml (diff)
The file was modified resources/doc/src/manuali/console/configurazione/tokenPolicy/mappingToken.rst (diff)
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-30172.rst
The file was addedthird-party-licenses/log/log4j-core-2.19.0/LICENSE
The file was modified tools/rs/config/server/ant/openspcoop2-govwayConfigApiRS-war.xml (diff)
The file was removedthird-party-licenses/spring/spring-core-5.3.33/license.txt
The file was removedthird-party-licenses/spring/spring-aop-5.3.33/license.txt
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-30171.rst
The file was addedresources/doc/src/manuali/vulnerability-management/securityAdvisory/2024/CVE-2024-22262.rst
The file was addedthird-party-licenses/security/bcprov-ext-jdk18on-1.78/license.txt
The file was addedthird-party-licenses/spring/spring-expression-5.3.34/license.txt
The file was addedthird-party-licenses/testsuite/spring-jdbc-5.3.34/license.txt
The file was addedthird-party-licenses/security/bcprov-ext-jdk18on-1.78/license.html
The file was modified tools/web_interfaces/monitor/ant/openspcoop2-govwayMonitor-war.xml (diff)
The file was modified core/ant/openspcoop2-war.xml (diff)
The file was removedthird-party-licenses/security/bcutil-jdk18on-1.74/license.txt
The file was removedthird-party-licenses/security/bcprov-ext-jdk18on-1.74/license.html
The file was modified .gitignore (diff)
The file was modified resources/doc/src/manuali/console/profiloModIPA/messaggio/avanzata/fruizione_scenari/fruizione_keystore.rst (diff)
The file was removedthird-party-licenses/spring/spring-context-support-5.3.33/license.txt
The file was modified testsuite/src/WEB-INF/jboss-deployment-structure.xml.jboss7 (diff)
The file was modified testsuite/src/WEB-INF/jboss-deployment-structure.xml.wildfly (diff)
The file was addedthird-party-licenses/spring/spring-tx-5.3.34/license.txt
The file was modified tools/rs/monitor/server/ant/openspcoop2-govwayMonitorApiRS-war.xml (diff)
The file was removedthird-party-licenses/security/bcprov-ext-jdk18on-1.74/license.txt
The file was removedthird-party-licenses/spring/spring-tx-5.3.33/license.txt
The file was addedthird-party-licenses/security/bcutil-jdk18on-1.78.1/license.txt
The file was modified protocolli/trasparente/testsuite/build.xml (diff)
The file was addedthird-party-licenses/log/log4j-1.2-api-2.19.0/LICENSE
The file was addedthird-party-licenses/log/log4j-jcl-2.19.0/LICENSE
The file was addedthird-party-licenses/security/bcutil-jdk18on-1.78.1/license.html
The file was modified mvn/dependencies/pom.xml (diff)
The file was removedthird-party-licenses/spring/spring-orm-5.3.33/license.txt
The file was modified ChangeLog (diff)
The file was addedthird-party-licenses/spring/spring-aop-5.3.34/license.txt
The file was modified tools/web_interfaces/control_station/ant/openspcoop2-govwayConsole-war.xml (diff)
The file was modified lib/openspcoop2.userlibraries (diff)
The file was modified resources/doc/src/manuali/console/profiloApiGateway/connettore/proxyPassReverse.rst (diff)
The file was addedthird-party-licenses/log/log4j-slf4j2-impl-2.19.0/LICENSE
The file was addedthird-party-licenses/security/bcpkix-jdk18on-1.78.1/license.html
The file was modified resources/doc/src/manuali/validation-process/staticCodeAnalysis/spotbugs/maven.rst (diff)