Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker
Commits: 079d0d7b by Guilhem Moulin at 2025-12-25T15:38:33+01:00 CVE-2025-50182/python-urllib3: Mark as <not-affected> for bullseye. Emscripten/Pyodide support was added in version 2.2.0. Per upstream advisory https://github.com/urllib3/urllib3/security/advisories/GHSA-48p4-8xcf-vxj5 earlier versions are not affected. - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -64658,7 +64658,7 @@ CVE-2025-50183 (OpenList Frontend is a UI component for OpenList. Prior to versi CVE-2025-50182 (urllib3 is a user-friendly HTTP client library for Python. Starting in ...) - python-urllib3 2.3.0-3 (bug #1108077) [bookworm] - python-urllib3 <no-dsa> (Minor issue) - [bullseye] - python-urllib3 <postponed> (Minor issue) + [bullseye] - python-urllib3 <not-affected> (Vulnerable code introduced later) NOTE: https://github.com/urllib3/urllib3/security/advisories/GHSA-48p4-8xcf-vxj5 NOTE: https://github.com/urllib3/urllib3/commit/7eb4a2aafe49a279c29b6d1f0ed0f42e9736194f (2.5.0) CVE-2025-50181 (urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/079d0d7b0eeeb6570d68b46265a062480553f487 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/079d0d7b0eeeb6570d68b46265a062480553f487 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
