From 6cdfc4f0b1901dd03480fb0e740f48403f525dbc Mon Sep 17 00:00:00 2001 From: Chris Lamb Date: Sun, 13 Jun 2021 09:10:01 +0100 Subject: Triage CVE-2021-28965 in ruby2.3 for stretch LTS. --- data/CVE/list | 1 + 1 file changed, 1 insertion(+) (limited to 'data') diff --git a/data/CVE/list b/data/CVE/list index c6fcc10843..929da77903 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -13476,6 +13476,7 @@ CVE-2021-28965 (The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2. - ruby2.5 [buster] - ruby2.5 (Minor issue, can be fixed along with next update) - ruby2.3 + [stretch] - ruby2.3 (Minor issue; can be fixed in next update) [experimental] - ruby-rexml 3.2.5-1 - ruby-rexml (bug #986806) NOTE: https://www.ruby-lang.org/en/news/2021/04/05/xml-round-trip-vulnerability-in-rexml-cve-2021-28965/ -- cgit v1.2.3