Roundup Tracker - Issues

Message7641

Author rouilj
Recipients rouilj
Date 2022-09-01.20:23:47
Message-id <1662063827.58.0.0322301736983.issue2551198@roundup.psfhosted.org>
In-reply-to
Also 0.8.4 which is the version supported has a CVE against it.

https://nvd.nist.gov/vuln/detail/CVE-2022-34749

its a DOS caused by regexp backtracking in inline formatting.

fixed in 2.2.0.
History
Date User Action Args
2022-09-01 20:23:47rouiljsetmessageid: <1662063827.58.0.0322301736983.issue2551198@roundup.psfhosted.org>
2022-09-01 20:23:47rouiljsetrecipients: + rouilj
2022-09-01 20:23:47rouiljlinkissue2551198 messages
2022-09-01 20:23:47rouiljcreate