summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-04-23 08:58:45 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2024-04-23 08:58:45 +0200
commit220c9afa393238d65a570c6f6cc1579bb8369102 (patch)
treee5af5acc3df391e52a5ccfb4e1573987b64c7c1b
parent084b134a8ea25f51d445f0cb2e796aa6cc04f0b2 (diff)
Add CVE-2024-28184/weasyprint
-rw-r--r--data/CVE/list6
1 files changed, 5 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 47fef93012..5a6c8b735c 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -13333,7 +13333,11 @@ CVE-2024-28754 (RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers
CVE-2024-28753 (RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers to re ...)
NOT-FOR-US: RaspAP
CVE-2024-28184 (WeasyPrint helps web developers to create PDF documents. Since version ...)
- NOT-FOR-US: WeasyPrint
+ - weasyprint 61.2-1
+ [bookworm] - weasyprint <not-affected> (Vulnerable code not present)
+ [bullseye] - weasyprint <not-affected> (Vulnerable code not present)
+ NOTE: https://github.com/Kozea/WeasyPrint/security/advisories/GHSA-35jj-wx47-4w8r
+ NOTE: https://github.com/Kozea/WeasyPrint/commit/734ee8e2dc84ff3090682f3abff056d0907c8598 (v61.2)
CVE-2024-28180 (Package jose aims to provide an implementation of the Javascript Objec ...)
- golang-github-go-jose-go-jose 4.0.1-1 (bug #1065814)
NOTE: https://github.com/go-jose/go-jose/security/advisories/GHSA-c5q2-7r4c-mv6g

© 2014-2024 Faster IT GmbH | imprint | privacy policy