summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-11-25 22:17:51 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2021-11-25 22:17:51 +0100
commit5481c7daf314c3ecfe7e81d270411d677ce929f6 (patch)
treedcd320921e229d1f48c3855497cf1e6b21282324
parent206a8e3d59bd85bd33c9ed6bc7586f4949af282c (diff)
Mark CVE-2021-41270/symfony as no-dsa
-rw-r--r--data/CVE/2021.list1
1 files changed, 1 insertions, 0 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index ff96d12d55..e2161c7b85 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -6851,6 +6851,7 @@ CVE-2021-41271 (Discourse is a platform for community discussion. In affected ve
NOT-FOR-US: Discourse
CVE-2021-41270 (Symfony/Serializer handles serializing and deserializing data structur ...)
- symfony 4.4.19+dfsg-3
+ [bullseye] - symfony <no-dsa> (Minor issue; can be fixed via point release)
[buster] - symfony <not-affected> (Vulnerable code and support for csv_escape_formulas introduced in 4.1)
[stretch] - symfony <not-affected> (Vulnerable code and support for csv_escape_formulas introduced in 4.1)
NOTE: https://github.com/symfony/symfony/security/advisories/GHSA-2xhg-w2g5-w95x

© 2014-2024 Faster IT GmbH | imprint | privacy policy