[Git][security-tracker-team/security-tracker][master] Triaged python-cmarkgfm for LTS (buster) and concluded CVE-2022-24724 and...

Ola Lundqvist (@opal) opal at debian.org
Mon Oct 31 14:52:05 GMT 2022



Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b8c1e028 by Ola Lundqvist at 2022-10-31T15:51:43+01:00
Triaged python-cmarkgfm for LTS (buster) and concluded CVE-2022-24724 and CVE-2022-39209 to be minor issues. Same conclusion as cmark-gfm.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -14497,6 +14497,7 @@ CVE-2022-39209 (cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and re
 	- cmark-gfm 0.29.0.gfm.6-2 (bug #1020588)
 	[buster] - cmark-gfm <no-dsa> (Minor issue)
 	- python-cmarkgfm <unfixed>
+	[buster] - python-cmarkgfm <no-dsa> (Minor issue)
 	- ghostwriter <unfixed> (unimportant)
 	- ruby-commonmarker <unfixed>
 	- r-cran-commonmark <unfixed>
@@ -55608,6 +55609,7 @@ CVE-2022-24724 (cmark-gfm is GitHub's extended version of the C reference implem
 	[bullseye] - ghostwriter <not-affected> (Vulnerable code not present)
 	[buster] - ghostwriter <not-affected> (Vulnerable code not present)
 	- python-cmarkgfm 0.7.0-1 (bug #1006758)
+	[buster] - python-cmarkgfm <no-dsa> (Minor issue)
 	- ruby-commonmarker <unfixed> (bug #1006759)
 	- r-cran-commonmark 1.8.0-1 (bug #1006760)
 	[bullseye] - r-cran-commonmark <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8c1e028fbcfa6be28a7f5412ed8350012cce046

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8c1e028fbcfa6be28a7f5412ed8350012cce046
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221031/a015ca31/attachment.htm>


More information about the debian-security-tracker-commits mailing list