summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-03-31 09:01:45 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2021-03-31 09:01:45 +0200
commitf067186bd35cf3a0469f5a775ec3666a878ce25c (patch)
treeccc112bac6258fc5cbab72dacb7c927d4f5f634e
parent9619e1ec5d3dd57bc0a92a4147840747e3d6a9e8 (diff)
Add CVE-2021-23980/python-bleach
-rw-r--r--data/CVE/2021.list5
1 files changed, 4 insertions, 1 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index 2346471767..dc8eeecf44 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -12717,8 +12717,11 @@ CVE-2021-23981
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2021-10/#CVE-2021-23981
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2021-11/#CVE-2021-23981
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2021-12/#CVE-2021-23981
-CVE-2021-23980
+CVE-2021-23980 [mutation XSS via allowed math or svg; p or br; and style, title, noscript, script, textarea, noframes, iframe, or xmp tags with strip_comments=False]
RESERVED
+ - python-bleach <unfixed>
+ NOTE: https://github.com/mozilla/bleach/security/advisories/GHSA-vv2x-vrpj-qqpq
+ NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=1689399
CVE-2021-23979 (Mozilla developers reported memory safety bugs present in Firefox 85. ...)
- firefox 86.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2021-07/#CVE-2021-23979

© 2014-2024 Faster IT GmbH | imprint | privacy policy