Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
21deeef5 by Salvatore Bonaccorso at 2023-01-06T14:36:52+01:00
Update information on CVE-2022-24724/ruby-commonmarker

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -71188,7 +71188,7 @@ CVE-2022-24724 (cmark-gfm is GitHub's extended version 
of the C reference implem
        [buster] - ghostwriter <not-affected> (Vulnerable code not present)
        - python-cmarkgfm 0.7.0-1 (bug #1006758)
        [buster] - python-cmarkgfm <no-dsa> (Minor issue)
-       - ruby-commonmarker <unfixed> (bug #1006759)
+       - ruby-commonmarker 0.23.4-1 (bug #1006759)
        [buster] - ruby-commonmarker <no-dsa> (Minor issue)
        - r-cran-commonmark 1.8.0-1 (bug #1006760)
        [bullseye] - r-cran-commonmark <no-dsa> (Minor issue)
@@ -71196,6 +71196,7 @@ CVE-2022-24724 (cmark-gfm is GitHub's extended version 
of the C reference implem
        NOTE: 
https://github.com/github/cmark-gfm/security/advisories/GHSA-mc3g-88wq-6f4x
        NOTE: https://github.com/github/cmark-gfm/releases/tag/0.29.0.gfm.3
        NOTE: 
https://github.com/github/cmark-gfm/commit/ac80f7b56522ffa158e1f0c14a611ffccacd4027
 (0.29.0.gfm.3)
+       NOTE: 
https://github.com/gjtorikian/commonmarker/26ff69679d1bf53adf43279236a7f74d06013f4c
 (v0.23.4)
        NOTE: https://bugs.chromium.org/p/project-zero/issues/detail?id=2258
 CVE-2022-24723 (URI.js is a Javascript URL mutation library. Before version 
1.19.9, wh ...)
        - node-urijs <itp> (bug #902083)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21deeef5fb69c2a56be49e24e34a06275c9d6a25

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21deeef5fb69c2a56be49e24e34a06275c9d6a25
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to