[Git][security-tracker-team/security-tracker][master] 2 commits: dla: take ruby-rails-html-sanitizer

Adrian Bunk (@bunk) bunk at debian.org
Sat Sep 28 02:40:21 BST 2024



Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aba84f21 by Adrian Bunk at 2024-09-28T04:37:09+03:00
dla: take ruby-rails-html-sanitizer

- - - - -
ab2f46ac by Adrian Bunk at 2024-09-28T04:40:02+03:00
Add and take ruby-loofah

Already fixed in buster by DLA-3565-1, CVE-2022-23516 fix and other
changes are required for fixing ruby-rails-html-sanitizer.

- - - - -


1 changed file:

- data/dla-needed.txt


Changes:

=====================================
data/dla-needed.txt
=====================================
@@ -184,7 +184,10 @@ ruby-httparty (Adrian Bunk)
   NOTE: 20240815: Added by Front-Desk (Beuc)
   NOTE: 20240815: Follow fixes from DLA-3716-1 (CVE-2024-22049) (Beuc/front-desk)
 --
-ruby-rails-html-sanitizer
+ruby-loofah (Adrian Bunk)
+  NOTE: 20240928: Required for fixing ruby-rails-html-sanitizer. (bunk)
+--
+ruby-rails-html-sanitizer (Adrian Bunk)
   NOTE: 20230901: Added by oldstable Security Team (jmm)
   NOTE: 20240815: Follow fixes from DLA-3566-1 and DLA-3227-1 (5 CVEs) (Beuc/front-desk)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/aba0ff54c0b8d83de7a9225036fcc9e467c662e7...ab2f46acda3ac7feb8f67940671c9c12c2ddcc12

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/aba0ff54c0b8d83de7a9225036fcc9e467c662e7...ab2f46acda3ac7feb8f67940671c9c12c2ddcc12
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240928/451a5611/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list