[Git][security-tracker-team/security-tracker][master] Reserve DLA-3900-1 for ruby-httparty
Adrian Bunk (@bunk)
bunk at debian.org
Sat Sep 28 11:00:02 BST 2024
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker
Commits:
36ded686 by Adrian Bunk at 2024-09-28T12:59:52+03:00
Reserve DLA-3900-1 for ruby-httparty
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[28 Sep 2024] DLA-3900-1 ruby-httparty - security update
+ {CVE-2024-22049}
+ [bullseye] - ruby-httparty 0.18.1-2+deb11u1
[27 Sep 2024] DLA-3899-1 python-asyncssh - security update
{CVE-2023-46445 CVE-2023-46446 CVE-2023-48795}
[bullseye] - python-asyncssh 2.5.0-0.1+deb11u1
=====================================
data/dla-needed.txt
=====================================
@@ -180,10 +180,6 @@ qemu (Adrian Bunk)
NOTE: 20240815: Follow fixes from bookworm 12.6 (CVE-2024-3446,CVE-2024-3447)
NOTE: 20240815: CVE-2024-4467 fix also proposed for 12.7 (https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1076504)
--
-ruby-httparty (Adrian Bunk)
- NOTE: 20240815: Added by Front-Desk (Beuc)
- NOTE: 20240815: Follow fixes from DLA-3716-1 (CVE-2024-22049) (Beuc/front-desk)
---
ruby-loofah (Adrian Bunk)
NOTE: 20240928: Required for fixing ruby-rails-html-sanitizer. (bunk)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36ded68612430c4f6337d31df46918762d2e5258
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36ded68612430c4f6337d31df46918762d2e5258
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240928/013b60de/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list