[Git][security-tracker-team/security-tracker][master] Update information on CVE-2022-24724/ruby-commonmarker

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jan 6 13:37:23 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
21deeef5 by Salvatore Bonaccorso at 2023-01-06T14:36:52+01:00
Update information on CVE-2022-24724/ruby-commonmarker

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -71188,7 +71188,7 @@ CVE-2022-24724 (cmark-gfm is GitHub's extended version of the C reference implem
 	[buster] - ghostwriter <not-affected> (Vulnerable code not present)
 	- python-cmarkgfm 0.7.0-1 (bug #1006758)
 	[buster] - python-cmarkgfm <no-dsa> (Minor issue)
-	- ruby-commonmarker <unfixed> (bug #1006759)
+	- ruby-commonmarker 0.23.4-1 (bug #1006759)
 	[buster] - ruby-commonmarker <no-dsa> (Minor issue)
 	- r-cran-commonmark 1.8.0-1 (bug #1006760)
 	[bullseye] - r-cran-commonmark <no-dsa> (Minor issue)
@@ -71196,6 +71196,7 @@ CVE-2022-24724 (cmark-gfm is GitHub's extended version of the C reference implem
 	NOTE: https://github.com/github/cmark-gfm/security/advisories/GHSA-mc3g-88wq-6f4x
 	NOTE: https://github.com/github/cmark-gfm/releases/tag/0.29.0.gfm.3
 	NOTE: https://github.com/github/cmark-gfm/commit/ac80f7b56522ffa158e1f0c14a611ffccacd4027 (0.29.0.gfm.3)
+	NOTE: https://github.com/gjtorikian/commonmarker/26ff69679d1bf53adf43279236a7f74d06013f4c (v0.23.4)
 	NOTE: https://bugs.chromium.org/p/project-zero/issues/detail?id=2258
 CVE-2022-24723 (URI.js is a Javascript URL mutation library. Before version 1.19.9, wh ...)
 	- node-urijs <itp> (bug #902083)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21deeef5fb69c2a56be49e24e34a06275c9d6a25

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21deeef5fb69c2a56be49e24e34a06275c9d6a25
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230106/927ec6cd/attachment.htm>


More information about the debian-security-tracker-commits mailing list