[Git][security-tracker-team/security-tracker][master] Add commit reference for CVE-2021-28957/lxml

Salvatore Bonaccorso carnil at debian.org
Sun Mar 21 16:51:27 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1ef8be51 by Salvatore Bonaccorso at 2021-03-21T17:50:57+01:00
Add commit reference for CVE-2021-28957/lxml

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -32,6 +32,7 @@ CVE-2021-28957 (lxml 4.6.2 places the HTML action attribute into defs.link_attrs
 	- lxml <unfixed> (bug #985643)
 	NOTE: https://bugs.launchpad.net/lxml/+bug/1888153
 	NOTE: https://github.com/lxml/lxml/pull/316
+	NOTE: https://github.com/lxml/lxml/commit/2d01a1ba8984e0483ce6619b972832377f208a0d
 CVE-2021-28952 (An issue was discovered in the Linux kernel through 5.11.8. The sound/ ...)
 	- linux <unfixed>
 	[buster] - linux <not-affected> (Vulnerable code introduced later)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1ef8be517e1750ea4b92c5429ba2b7060d2dc914

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1ef8be517e1750ea4b92c5429ba2b7060d2dc914
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210321/5147405e/attachment.htm>


More information about the debian-security-tracker-commits mailing list