[Git][security-tracker-team/security-tracker][master] new redcarpet issue

Moritz Muehlenhoff jmm at debian.org
Wed Jan 13 09:58:10 GMT 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
243209db by Moritz Muehlenhoff at 2021-01-13T10:57:45+01:00
new redcarpet issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23274,7 +23274,9 @@ CVE-2020-26300
 CVE-2020-26299
 	RESERVED
 CVE-2020-26298 (Redcarpet is a Ruby library for Markdown processing. In Redcarpet befo ...)
-	TODO: check
+	- ruby-redcarpet <unfixed>
+	NOTE: https://github.com/advisories/GHSA-q3wr-qw3g-3p4h
+	NOTE: https://github.com/vmg/redcarpet/commit/a699c82292b17c8e6a62e1914d5eccc252272793
 CVE-2020-26297 (mdBook is a utility to create modern online books from Markdown files  ...)
 	NOT-FOR-US: mdBook
 CVE-2020-26296 (Vega is a visualization grammar, a declarative format for creating, sa ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/243209db2e424a289f168935d2a85748d30edfed

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/243209db2e424a289f168935d2a85748d30edfed
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210113/f2e04e90/attachment.html>


More information about the debian-security-tracker-commits mailing list