pkgsrc-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: py-jinja2 vulnerability



On Tue, 13 May 2014 13:02:57 +0900, matthew sporleder 
<msporleder%gmail.com@localhost> wrote:

according to
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=734747

this pkg is no longer vulnerable.  I wasn't sure if there was a
procedure for updating pkg-vulnerabilities (or validating my regex).

Can someone help me out?

py-jinja2-2.7.2 fixes CVE-2014-1402 but introduce CVE-2014-0012, right?

--
OBATA Akio / obata%lins.jp@localhost


Home | Main Index | Thread Index | Old Index