[Git][security-tracker-team/security-tracker][master] new tidy-html5 issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Mar 10 16:24:56 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d7a06838 by Moritz Muehlenhoff at 2023-03-10T17:24:29+01:00
new tidy-html5 issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -133888,7 +133888,10 @@ CVE-2021-33393 (lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfi
 CVE-2021-33392
 	RESERVED
 CVE-2021-33391 (An issue in HTACG HTML Tidy v5.7.28 allows attacker to execute arbitra ...)
-	TODO: check
+	- tidy-html5 <unfixed>
+	[bullseye] - tidy-html5 <no-dsa> (Minor issue)
+	NOTE: https://github.com/htacg/tidy-html5/issues/946
+	NOTE: https://github.com/htacg/tidy-html5/commit/efa61528aa500a1efbd2768121820742d3bb709b
 CVE-2021-33390
 	RESERVED
 CVE-2021-33389



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d7a0683860779c73e13ab9f2e1b7a7b1d49fd9c2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d7a0683860779c73e13ab9f2e1b7a7b1d49fd9c2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230310/219b7690/attachment.htm>


More information about the debian-security-tracker-commits mailing list