Bug#1039087: removing embeded version of yajl

Moritz Mühlenhoff jmm at inutil.org
Mon Oct 28 19:40:13 GMT 2024


Am Wed, May 29, 2024 at 10:38:29AM +0200 schrieb PICCA Frederic-Emmanuel:
> Here the upstream point of view about the CVE.
> 
> https://github.com/epics-base/epics-base/issues/405
> 
> check with the security team, if their analyse is ok ?

Given that epics parser has evolved quite a bit, I'd say just stick
with it and let's close this bug.

They mention that the known issues all don't affect the epics fork
either, so I'll mark epics as unaffected in the Security Tracker.

Cheers,
        Moritz



More information about the debian-science-maintainers mailing list