[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-42353/python-webob

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Jan 12 19:19:26 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b3f71972 by Salvatore Bonaccorso at 2025-01-12T20:16:51+01:00
Track fixed version for CVE-2024-42353/python-webob

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -39631,7 +39631,7 @@ CVE-2024-43368 (The Trix editor, versions prior to 2.1.4, is vulnerable to XSS w
 CVE-2024-43275 (Cross-Site Request Forgery (CSRF) vulnerability in xyzscripts.Com Inse ...)
 	NOT-FOR-US: Xyzscripts Insert PHP Code Snippet
 CVE-2024-42353 (WebOb provides objects for HTTP requests and responses. When WebOb nor ...)
-	- python-webob <unfixed> (bug #1078879)
+	- python-webob 1:1.8.9-1 (bug #1078879)
 	[bookworm] - python-webob <no-dsa> (Minor issue)
 	[bullseye] - python-webob <postponed> (Minor issue)
 	NOTE: https://github.com/Pylons/webob/security/advisories/GHSA-mg3v-6m49-jhp3



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b3f71972ef4cb9fa02f2db1303184572b7e2bbc8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b3f71972ef4cb9fa02f2db1303184572b7e2bbc8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250112/c55d18fa/attachment.htm>


More information about the debian-security-tracker-commits mailing list