Bug#1022122: bullseye-pu: package node-minimatch/3.0.4+~3.0.3-1+deb11u1

2022-11-23 Thread Adam D. Barratt
Control: tags -1 + confirmed On Thu, 2022-10-20 at 17:22 +0200, Yadd wrote: > node-minimatch is vulnerable to ReDoS > Please go ahead. Regards, Adam

Bug#1022122: bullseye-pu: package node-minimatch/3.0.4+~3.0.3-1+deb11u1

2022-10-20 Thread Yadd
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu [ Reason ] node-minimatch is vulnerable to ReDoS [ Impact ] Medium security issue [ Tests ] New tests included in patch, passed [ Risks ] Low risk, patch is not so big and test