[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for CVE-2022-42964/pymatgen
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Jun 27 06:50:18 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
18cfb647 by Salvatore Bonaccorso at 2023-06-27T07:49:37+02:00
Track fixed version via unstable for CVE-2022-42964/pymatgen
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -52260,7 +52260,7 @@ CVE-2022-42966 (An exponential ReDoS (Regular Expression Denial of Service) can
CVE-2022-42965 (An exponential ReDoS (Regular Expression Denial of Service) can be tri ...)
NOT-FOR-US: snowflake-connector-python
CVE-2022-42964 (An exponential ReDoS (Regular Expression Denial of Service) can be tri ...)
- - pymatgen <unfixed> (bug #1024017)
+ - pymatgen 2023.06.23+dfsg1-1 (bug #1024017)
[bookworm] - pymatgen <no-dsa> (Minor issue)
NOTE: https://research.jfrog.com/vulnerabilities/pymatgen-redos-xray-257184/
NOTE: https://github.com/materialsproject/pymatgen/issues/2755
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/18cfb647ca5944f13d1128d0297b610ea5ef6614
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/18cfb647ca5944f13d1128d0297b610ea5ef6614
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230627/3c6f8b82/attachment.htm>
More information about the debian-security-tracker-commits
mailing list