[Git][security-tracker-team/security-tracker][master] new node-xmldom issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jul 28 13:44:34 BST 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8eaa3be4 by Moritz Muehlenhoff at 2021-07-28T14:44:08+02:00
new node-xmldom issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -10867,7 +10867,10 @@ CVE-2021-32798
 CVE-2021-32797
 	RESERVED
 CVE-2021-32796 (xmldom is an open source pure JavaScript W3C standard-based (XML DOM L ...)
-	TODO: check
+	- node-xmldom <unfixed>
+	[buster] - node-xmldom <no-dsa> (Minor issue)
+	NOTE: https://github.com/xmldom/xmldom/security/advisories/GHSA-5fg8-2547-mr8q
+	NOTE: https://github.com/xmldom/xmldom/commit/7b4b743917a892d407356e055b296dcd6d107e8b
 CVE-2021-32795 (ArchiSteamFarm is a C# application with primary purpose of idling Stea ...)
 	NOT-FOR-US: ArchiSteamFarm
 CVE-2021-32794 (ArchiSteamFarm is a C# application with primary purpose of idling Stea ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8eaa3be402973c1733d1fb3d5f89ccffae80a261

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8eaa3be402973c1733d1fb3d5f89ccffae80a261
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210728/bb2c5a74/attachment.htm>


More information about the debian-security-tracker-commits mailing list