[Git][security-tracker-team/security-tracker][master] Reserve DLA-3902-1 for ruby-rails-html-sanitizer
Adrian Bunk (@bunk)
bunk at debian.org
Sat Sep 28 21:42:27 BST 2024
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker
Commits:
2ae839c2 by Adrian Bunk at 2024-09-28T23:04:46+03:00
Reserve DLA-3902-1 for ruby-rails-html-sanitizer
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[28 Sep 2024] DLA-3902-1 ruby-rails-html-sanitizer - security update
+ {CVE-2022-23517 CVE-2022-23518 CVE-2022-23519 CVE-2022-23520 CVE-2022-32209}
+ [bullseye] - ruby-rails-html-sanitizer 1.3.0-1+deb11u1
[28 Sep 2024] DLA-3901-1 ruby-loofah - security update
{CVE-2022-23514 CVE-2022-23515 CVE-2022-23516}
[bullseye] - ruby-loofah 2.7.0+dfsg-1+deb11u1
=====================================
data/dla-needed.txt
=====================================
@@ -186,10 +186,6 @@ qemu (Adrian Bunk)
NOTE: 20240815: Follow fixes from bookworm 12.6 (CVE-2024-3446,CVE-2024-3447)
NOTE: 20240815: CVE-2024-4467 fix also proposed for 12.7 (https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1076504)
--
-ruby-rails-html-sanitizer (Adrian Bunk)
- NOTE: 20230901: Added by oldstable Security Team (jmm)
- NOTE: 20240815: Follow fixes from DLA-3566-1 and DLA-3227-1 (5 CVEs) (Beuc/front-desk)
---
ruby-saml
NOTE: 20240915: Added by Front-Desk (ta)
NOTE: 20240915: please recheck whether package is really affected
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2ae839c277feb8ba1767f7060b1a5b1ae01972a9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2ae839c277feb8ba1767f7060b1a5b1ae01972a9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240928/e66642c4/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list