Bug#1078880: [Pkg-javascript-devel] Bug#1078880: gettext.js: CVE-2024-43370

2024-08-20 Thread Salvatore Bonaccorso
Hi Xavier, On Tue, Aug 20, 2024 at 05:33:49PM +0400, Yadd wrote: > On 8/20/24 17:30, Salvatore Bonaccorso wrote: > > Hi, > > > > On Tue, Aug 20, 2024 at 05:20:38PM +0400, Yadd wrote: > > > On 8/20/24 16:34, Moritz M??hlenhoff wrote: > > > > Hi Yadd, > > > > > > > > > here is a simple patch for t

Bug#1078880: [Pkg-javascript-devel] Bug#1078880: gettext.js: CVE-2024-43370

2024-08-20 Thread Yadd
On 8/20/24 17:30, Salvatore Bonaccorso wrote: Hi, On Tue, Aug 20, 2024 at 05:20:38PM +0400, Yadd wrote: On 8/20/24 16:34, Moritz M??hlenhoff wrote: Hi Yadd, here is a simple patch for this issue The debdiff looks fine, but I don't believe this needs a DSA, can you please submit this for th

Bug#1078880: [Pkg-javascript-devel] Bug#1078880: gettext.js: CVE-2024-43370

2024-08-20 Thread Salvatore Bonaccorso
Hi, On Tue, Aug 20, 2024 at 05:20:38PM +0400, Yadd wrote: > On 8/20/24 16:34, Moritz M??hlenhoff wrote: > > Hi Yadd, > > > > > here is a simple patch for this issue > > > > The debdiff looks fine, but I don't believe this needs a > > DSA, can you please submit this for the next point update > >

Bug#1078880: [Pkg-javascript-devel] Bug#1078880: gettext.js: CVE-2024-43370

2024-08-20 Thread Yadd
On 8/20/24 16:34, Moritz Mühlenhoff wrote: Hi Yadd, here is a simple patch for this issue The debdiff looks fine, but I don't believe this needs a DSA, can you please submit this for the next point update instead? Agree, but the bug was tagged as "grave" ;-) Cheers, Xavier

Bug#1078880: [Pkg-javascript-devel] Bug#1078880: gettext.js: CVE-2024-43370

2024-08-20 Thread Moritz Mühlenhoff
Hi Yadd, > here is a simple patch for this issue The debdiff looks fine, but I don't believe this needs a DSA, can you please submit this for the next point update instead? Cheers, Moritz