[Git][security-tracker-team/security-tracker][master] Add description for CVE-2021-3902

Bastien Roucariès (@rouca) rouca at debian.org
Thu Jul 13 17:56:23 BST 2023



Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker


Commits:
02f6811b by Bastien Roucariès at 2023-07-13T16:55:51+00:00
Add description for CVE-2021-3902

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -128296,7 +128296,7 @@ CVE-2021-42854 (It was discovered that the SteelCentral AppInternals Dynamic Sam
 	NOT-FOR-US: SteelCentral AppInternals Dynamic Sampling Agent (DSA)
 CVE-2021-42853 (It was discovered that the SteelCentral AppInternals Dynamic Sampling  ...)
 	NOT-FOR-US: SteelCentral AppInternals Dynamic Sampling Agent (DSA)
-CVE-2021-3902
+CVE-2021-3902 (Improper Restriction of XML External Entity Reference for included svg files)
 	RESERVED
 	- php-dompdf 2.0.2+dfsg-1
 	[buster] - php-dompdf <not-affected> (current code reject svg image. Double checked by testing)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02f6811bbafefb436567507b3653c4f42e38046e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02f6811bbafefb436567507b3653c4f42e38046e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230713/94be62c2/attachment.htm>


More information about the debian-security-tracker-commits mailing list