[Git][security-tracker-team/security-tracker][master] CVE-2022-29217/pyjwt unfixed 1011747

Neil Williams (@codehelp) codehelp at debian.org
Thu May 26 10:46:22 BST 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d94414a0 by Neil Williams at 2022-05-26T10:45:50+01:00
CVE-2022-29217/pyjwt unfixed 1011747

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6980,7 +6980,10 @@ CVE-2022-29219 (Lodestar is a TypeScript implementation of the Ethereum Consensu
 CVE-2022-29218 (RubyGems is a package registry used to supply software for the Ruby la ...)
 	NOT-FOR-US: rubygems/rubygems.org
 CVE-2022-29217 (PyJWT is a Python implementation of RFC 7519. PyJWT supports multiple  ...)
-	TODO: check
+	- pyjwt <unfixed> (bug #1011747)
+	NOTE: https://github.com/jpadilla/pyjwt/security/advisories/GHSA-ffqj-6fqr-9h24
+	NOTE: https://github.com/jpadilla/pyjwt/commit/9c528670c455b8d948aff95ed50e22940d1ad3fc (2.4.0)
+	NOTE: https://github.com/jpadilla/pyjwt/releases/tag/2.4.0
 CVE-2022-29216 (TensorFlow is an open source platform for machine learning. Prior to v ...)
 	- tensorflow <itp> (bug #804612)
 CVE-2022-29215 (RegionProtect is a plugin that allows users to manage certain events i ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d94414a05112bd783f53d423456d8d34c217f58d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d94414a05112bd783f53d423456d8d34c217f58d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220526/ae58484d/attachment.htm>


More information about the debian-security-tracker-commits mailing list