summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-04-16 21:42:07 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2024-04-16 21:42:07 +0200
commitfdc2753f693612f62336ebbfc95beb916b90ec41 (patch)
tree89dbd6585e07987c6c9695d438133bb94df332ef
parentfc2924faf6abe0a9955bcc13e194e0e760f29e49 (diff)
Add Debian bug reference for CVE-2024-3651/python-idna
-rw-r--r--data/CVE/list2
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index ff133fbf1e..fa5d97f06b 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -626,7 +626,7 @@ CVE-2023-52144 (Improper Limitation of a Pathname to a Restricted Directory ('Pa
CVE-2024-3508
NOT-FOR-US: Bombastic's use of bzip2
CVE-2024-3651 [potential DoS via resource consumption via specially crafted inputs to idna.encode()]
- - python-idna <unfixed>
+ - python-idna <unfixed> (bug #1069127)
NOTE: https://github.com/kjd/idna/security/advisories/GHSA-jjg7-2v4v-x38h
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2274779
NOTE: Fixed by: https://github.com/kjd/idna/commit/5beb28b9dd77912c0dd656d8b0fdba3eb80222e7 (v3.7)

© 2014-2024 Faster IT GmbH | imprint | privacy policy