Bug#983576: CVE-2020-8020 CVE-2020-8021 CVE-2020-8031

2023-03-15 Thread Andrej Shadura
Hi,

On Wed, 15 Mar 2023, at 17:33, Moritz Mühlenhoff wrote:
> Could we get these fixed for bookworm? (Plus #911797)

The OBS packages in bookworm don’t ship any Ruby (frontend) code anymore.

-- 
Cheers,
  Andrej



Bug#983576: CVE-2020-8020 CVE-2020-8021 CVE-2020-8031

2023-03-15 Thread Moritz Mühlenhoff
Am Fri, Feb 26, 2021 at 05:29:07PM +0100 schrieb Moritz Muehlenhoff:
> Source: open-build-service
> Severity: important
> Tags: security
> X-Debbugs-Cc: Debian Security Team 
> 
> CVE-2020-8020:
> https://bugzilla.suse.com/show_bug.cgi?id=1171439
> https://github.com/openSUSE/open-build-service/commit/7cc32c8e2ff7290698e101d9a80a9dc29a5500fb
> 
> CVE-2020-8021:
> https://bugzilla.suse.com/show_bug.cgi?id=1171649
> https://github.com/openSUSE/open-build-service/commit/7323c904f86ba9e04065c23422d06c03647589fb
> 
> CVE-2020-8031:
> https://bugzilla.suse.com/show_bug.cgi?id=1178880

Could we get these fixed for bookworm? (Plus #911797)

Cheers,
Moritz



Bug#983576: CVE-2020-8020 CVE-2020-8021 CVE-2020-8031

2021-02-26 Thread Moritz Muehlenhoff
Source: open-build-service
Severity: important
Tags: security
X-Debbugs-Cc: Debian Security Team 

CVE-2020-8020:
https://bugzilla.suse.com/show_bug.cgi?id=1171439
https://github.com/openSUSE/open-build-service/commit/7cc32c8e2ff7290698e101d9a80a9dc29a5500fb

CVE-2020-8021:
https://bugzilla.suse.com/show_bug.cgi?id=1171649
https://github.com/openSUSE/open-build-service/commit/7323c904f86ba9e04065c23422d06c03647589fb

CVE-2020-8031:
https://bugzilla.suse.com/show_bug.cgi?id=1178880

Cheers,
Moritz