[Git][security-tracker-team/security-tracker][master] Reserve DLA-2380-1 for ruby-gon
Chris Lamb
lamby at debian.org
Sat Sep 26 10:36:00 BST 2020
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
9eee53b8 by Chris Lamb at 2020-09-26T10:35:50+01:00
Reserve DLA-2380-1 for ruby-gon
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Sep 2020] DLA-2380-1 ruby-gon - security update
+ {CVE-2020-25739}
+ [stretch] - ruby-gon 6.1.0-1+deb9u1
[25 Sep 2020] DLA-2379-1 mediawiki - security update
{CVE-2020-25813 CVE-2020-25814 CVE-2020-25827 CVE-2020-25828}
[stretch] - mediawiki 1:1.27.7-1~deb9u4
=====================================
data/dla-needed.txt
=====================================
@@ -150,8 +150,6 @@ ruby-doorkeeper
NOTE: 20200831: in case it's really DLA worthy, I'd be very careful with this update. (utkarsh)
NOTE: 20200831: more investigation needed. (utkarsh)
--
-ruby-gon (Chris Lamb)
---
ruby-json-jwt (Utkarsh)
NOTE: 20200914: testing against the new reproducer. (utkarsh)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9eee53b8122589f922a5c9e9d3bcb917b4791838
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9eee53b8122589f922a5c9e9d3bcb917b4791838
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200926/3f931b58/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list