[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2021-21299/rust-hyper via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jun 25 07:00:57 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ef9f234b by Salvatore Bonaccorso at 2022-06-25T08:00:22+02:00
Add fixed version for CVE-2021-21299/rust-hyper via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -90436,7 +90436,7 @@ CVE-2020-36242 (In the cryptography package before 3.3.2 for Python, certain seq
 	[stretch] - python-cryptography <not-affected> (Vulnerable code introduced later)
 	NOTE: https://github.com/pyca/cryptography/issues/5615
 CVE-2021-21299 (hyper is an open-source HTTP library for Rust (crates.io). In hyper fr ...)
-	- rust-hyper <unfixed> (bug #988729)
+	- rust-hyper 0.14.19-1 (bug #988729)
 	NOTE: https://github.com/hyperium/hyper/security/advisories/GHSA-6hfq-h8hq-87mf
 	NOTE: https://rustsec.org/advisories/RUSTSEC-2021-0020.html
 CVE-2021-27218 (An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ef9f234b38e9d2d478be00d2a33024d0ec872da4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ef9f234b38e9d2d478be00d2a33024d0ec872da4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220625/ba5beed8/attachment.htm>


More information about the debian-security-tracker-commits mailing list