Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
c4a0c61b by Salvatore Bonaccorso at 2018-03-07T20:49:41+01:00
Add new python-bleach issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,3 +1,8 @@
+CVE-2018-XXXX [URI values with character entities not properly sanitized]
+       - python-bleach 2.1.3-1 (bug #892252)
+       [stretch] - python-bleach <not-affected> (Vulnerable code introduced 
later)
+       [jessie] - python-bleach <not-affected> (Vulnerable code introduced 
later)
+       NOTE: https://github.com/mozilla/bleach/pull/356
 CVE-2018-1000117 [Buffer overflow vulnerability in os.symlink on Windows]
        - python3.7 <not-affected> (Windows-specific)
        - python3.6 <not-affected> (Windows-specific)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/c4a0c61b75be55bac38782a03d68e63c2239aaf2

---
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/commit/c4a0c61b75be55bac38782a03d68e63c2239aaf2
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to