Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker
Commits: b2055004 by Utkarsh Gupta at 2022-12-07T00:39:14+05:30 Reserve DLA-3228-1 for node-json-schema - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes: ===================================== data/CVE/list ===================================== @@ -84780,7 +84780,6 @@ CVE-2021-43175 (The GOautodial API prior to commit 3c3a979 made on October 13th, CVE-2021-3918 (json-schema is vulnerable to Improperly Controlled Modification of Obj ...) - node-json-schema 0.4.0+~7.0.9-1 (bug #999765) [bullseye] - node-json-schema 0.3.0+~7.0.6-1+deb11u1 - [buster] - node-json-schema <no-dsa> (Minor issue) NOTE: https://github.com/kriszyp/json-schema/commit/22f146111f541d9737e832823699ad3528ca7741 (v0.4.0) CVE-2021-43174 (NLnet Labs Routinator versions 0.9.0 up to and including 0.10.1, suppo ...) {DSA-5041-1} ===================================== data/DLA/list ===================================== @@ -1,3 +1,6 @@ +[07 Dec 2022] DLA-3228-1 node-json-schema - security update + {CVE-2021-3918} + [buster] - node-json-schema 0.2.3-1+deb10u1 [07 Dec 2022] DLA-3227-1 ruby-rails-html-sanitizer - security update {CVE-2022-32209} [buster] - ruby-rails-html-sanitizer 1.0.4-1+deb10u1 ===================================== data/dla-needed.txt ===================================== @@ -177,10 +177,6 @@ node-hawk NOTE: 20221204: Programming language: Javascript. NOTE: 20221204: VCS: https://salsa.debian.org/lts-team/packages/node-hawk.git -- -node-json-schema (Utkarsh) - NOTE: 20221111: Programming language: JavaScript. - NOTE: 20221111: Follow fixes from bullseye 11.2 (Beuc/front-desk) --- node-loader-utils NOTE: 20221111: Programming language: JavaScript. NOTE: 20221111: upcoming bullseye PU https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1023798 (Beuc/front-desk) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b20550049ef2c9e4d716097ef5cef61a76f028d0 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b20550049ef2c9e4d716097ef5cef61a76f028d0 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits