Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
37898896 by Salvatore Bonaccorso at 2021-08-29T21:31:38+02:00
Add fixed version for CVE-2021-33880/python-websockets
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -14172,7 +14172,7 @@ CVE-2021-33882 (A Missing Authentication for Critical
Function vulnerability in
CVE-2021-33881 (On NXP MIFARE Ultralight and NTAG cards, an attacker can
interrupt a w ...)
NOT-FOR-US: NXP
CVE-2021-33880 (The aaugustin websockets library before 9.1 for Python has an
Observab ...)
- - python-websockets <unfixed> (bug #989561)
+ - python-websockets 9.1-1 (bug #989561)
[buster] - python-websockets <not-affected> (Vulnerable code introduced
in 8.0)
[stretch] - python-websockets <not-affected> (Vulnerable code
introduced in 8.0)
NOTE:
https://github.com/aaugustin/websockets/commit/547a26b685d08cac0aa64e5e65f7867ac0ea9bc0
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/37898896f3e84f65e0a67dccb04f78edf3f6104c
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/37898896f3e84f65e0a67dccb04f78edf3f6104c
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits