Bug#1040678: bookworm-pu: package node-dottie/2.0.2-4+deb12u1

2023-07-12 Thread Jonathan Wiltshire
Hi, Given the package is blocked from migration to testing at the moment, and probably won't migrate before we start preparing for 12.1, I've held this upload back. It'll likely be part of 12.2 instead. Thanks, -- Jonathan Wiltshire j...@debian.org Debian

Processed: Re: Bug#1040678: bookworm-pu: package node-dottie/2.0.2-4+deb12u1

2023-07-11 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1040678 [release.debian.org] bookworm-pu: package node-dottie/2.0.2-4+deb12u1 Added tag(s) confirmed. -- 1040678: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1040678 Debian Bug Tracking System Contact ow...@bugs.debian.org with

Bug#1040678: bookworm-pu: package node-dottie/2.0.2-4+deb12u1

2023-07-11 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2023-07-09 at 09:09 +0400, Yadd wrote: > node-dottie is vulnerable to prototype pollution (#1040592, > CVE-2023-26132) > Please go ahead. Regards, Adam

Bug#1040678: bookworm-pu: package node-dottie/2.0.2-4+deb12u1

2023-07-08 Thread Yadd
Package: release.debian.org Severity: normal Tags: bookworm User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: node-dot...@packages.debian.org Control: affects -1 + src:node-dottie [ Reason ] node-dottie is vulnerable to prototype pollution (#1040592, CVE-2023-26132) [