[Git][security-tracker-team/security-tracker][master] cleanup bogus nokogiri CVEs, which are now rejected
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Wed Sep 2 08:22:47 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b66a6f5f by Moritz Muehlenhoff at 2026-09-02T09:22:14+02:00
cleanup bogus nokogiri CVEs, which are now rejected
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8416,19 +8416,14 @@ CVE-2026-12600 (Denial-of-service (DoS) vulnerability in the internal JPEG2000 (
NOT-FOR-US: Poppler fork by Innodata Labs
CVE-2025-71407
REJECTED
- - ruby-nokogiri <not-affected> (Debian uses the system copy of libxml)
CVE-2025-71406
REJECTED
- - ruby-nokogiri <not-affected> (Debian uses the system copy of libxslt)
CVE-2025-71346
REJECTED
- - ruby-nokogiri <not-affected> (Debian uses the system copy of libxml)
CVE-2024-58378
REJECTED
- - ruby-nokogiri <not-affected> (Debian uses the system copy of libxml)
CVE-2024-58377
REJECTED
- - ruby-nokogiri <not-affected> (Debian uses the system copy of libxml)
CVE-2023-54354 (Nokogiri before 1.14.3 (CRuby implementation only, when using the pack ...)
- ruby-nokogiri <not-affected> (Debian uses the system copy of libxml)
CVE-2022-51000 (Nokogiri before 1.13.2 (CRuby, when using packaged libraries) ships ve ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b66a6f5ff73bc13b0cfc00c406b25d69c87e0233
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b66a6f5ff73bc13b0cfc00c406b25d69c87e0233
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260902/6b134e4c/attachment.htm>
More information about the debian-security-tracker-commits
mailing list