Le 16/08/2021 à 21:55, Salvatore Bonaccorso a écrit :
> Source: ckeditor
> Version: 4.16.0+dfsg-2
> Severity: important
> Tags: security upstream
> X-Debbugs-Cc: [email protected], Debian Security Team 
> <[email protected]>
> Control: found -1 4.11.1+dfsg-1
> 
> Hi,
> 
> The following vulnerability was published for ckeditor.

Backporting these 3 CVE fixes in Bullseye produces a big patch (~2000
lines) and I'm not sure to be able to backport this without including
ckeditor 4.16.1 changes.

For now, "too-intrusive"...

-- 
Pkg-javascript-devel mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-javascript-devel

Reply via email to