From f44277beff5add62f5ff59b8265d0b333901c596 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?S=C3=A9bastien=20Delafond?= Date: Tue, 22 Mar 2022 12:00:25 +0100 Subject: Updates for twig vs. php-twig source package --- data/CVE/list | 1 + data/dsa-needed.txt | 2 +- 2 files changed, 2 insertions(+), 1 deletion(-) (limited to 'data') diff --git a/data/CVE/list b/data/CVE/list index 870099a442..28a4ff7905 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -11671,6 +11671,7 @@ CVE-2022-23615 (XWiki Platform is a generic wiki platform offering runtime servi NOT-FOR-US: XWiki CVE-2022-23614 (Twig is an open source template language for PHP. When in a sandbox mo ...) - php-twig 3.3.8-1 + - twig NOTE: https://github.com/twigphp/Twig/security/advisories/GHSA-5mv2-rx3q-4w2v NOTE: https://github.com/twigphp/Twig/pull/3641 NOTE: https://github.com/twigphp/Twig/commit/2eb33080558611201b55079d07ac88f207b466d5 (v3.3.8) diff --git a/data/dsa-needed.txt b/data/dsa-needed.txt index b194ea3884..9aeb1874d5 100644 --- a/data/dsa-needed.txt +++ b/data/dsa-needed.txt @@ -44,7 +44,7 @@ trafficserver (jmm) -- twig/oldstable -- -twig (seb) +php-twig/stable (seb) 2022-03-21: update proposed by David Prévot for CVE-2022-23614 -- unzip -- cgit v1.2.3