[Git][security-tracker-team/security-tracker][master] add librsvg reference

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Sep 6 21:27:21 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
282b5501 by Moritz Muehlenhoff at 2023-09-06T22:26:03+02:00
add librsvg reference

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6273,6 +6273,7 @@ CVE-2023-38633 (A directory traversal problem in the URL decoder of librsvg befo
 	NOTE: https://gitlab.gnome.org/GNOME/librsvg/-/commit/d1f066bf2198bd46c5ba80cb5123b768ec16e37d (2.50.8)
 	NOTE: https://gitlab.gnome.org/GNOME/librsvg/-/commit/22bcb919c8b39133370c7fc0eb27176fb09aa4fb (2.46.6)
 	NOTE: https://www.openwall.com/lists/oss-security/2023/07/27/1
+	NOTE: https://www.canva.dev/blog/engineering/when-url-parsers-disagree-cve-2023-38633/
 CVE-2023-38195 (Datalust Seq before 2023.2.9489 allows insertion of sensitive informat ...)
 	NOT-FOR-US: Datalust Seq
 CVE-2023-3826 (A vulnerability has been found in IBOS OA 4.5.5 and classified as crit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/282b55015857af09606ec2310e508955be23235e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/282b55015857af09606ec2310e508955be23235e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230906/e4feb615/attachment.htm>


More information about the debian-security-tracker-commits mailing list