[Pkg-javascript-devel] Bug#1032188: node-css-what: CVE-2022-21222/CVE-2021-33587

Bastien Roucariès bastien.roucaries at cyu.fr
Wed Mar 1 11:53:03 GMT 2023


Package: node-css-what
Version: 4.0.0-3
Severity: serious
Tags: security
Justification: security
X-Debbugs-Cc: Debian Security Team <team at security.debian.org>

Dear Maintainer,

Find the minimal ReDoS fix for 4.0.0, checked with recheck

Bastien
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0005-Final-ReDos-Fix.patch
Type: text/x-patch
Size: 1297 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20230301/054be29e/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-Partial-fix-of-reDos.patch
Type: text/x-patch
Size: 1297 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20230301/054be29e/attachment-0001.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0002-Partial-fix-of-ReDos.patch
Type: text/x-patch
Size: 2107 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20230301/054be29e/attachment-0002.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0003-Partial-Fix-of-ReDos.patch
Type: text/x-patch
Size: 1117 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20230301/054be29e/attachment-0003.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0004-Partial-ReDoS-fix.patch
Type: text/x-patch
Size: 1246 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20230301/054be29e/attachment-0004.bin>


More information about the Pkg-javascript-devel mailing list