[Pkg-javascript-devel] Bug#1107087: unblock: twitter-bootstrap3/3.4.1+dfsg-6

Bastien Roucaries rouca at debian.org
Sun Jun 1 14:50:23 BST 2025


Package: release.debian.org
Severity: normal
X-Debbugs-Cc: twitter-bootstrap3 at packages.debian.org
Control: affects -1 + src:twitter-bootstrap3
User: release.debian.org at packages.debian.org
Usertags: unblock

Please unblock package twitter-bootstrap3

[ Reason ]
CVE-2025-1647


[ Impact ]
CVE-2025-1647 XSS injection


[ Tests ]
Manual using PoC + yadd review

[ Risks ]
Low change are minimal

[ Checklist ]
  [X] all changes are documented in the d/changelog
  [X] I reviewed all changes and I approve them
  [X] attach debdiff against the package in testing

[ Other info ]
Lack of upstream support (EOL)

unblock twitter-bootstrap3/3.4.1+dfsg-6
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 4_6.debdiff
Type: text/x-patch
Size: 4740 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20250601/689547bf/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part.
URL: <http://alioth-lists.debian.net/pipermail/pkg-javascript-devel/attachments/20250601/689547bf/attachment.sig>


More information about the Pkg-javascript-devel mailing list