Bug#927959: unblock: node-fresh/0.2.0-2

2019-04-26 Thread Xavier
Le 26/04/2019 à 17:43, Xavier a écrit : > Le 26/04/2019 à 17:41, Xavier a écrit : >> Le 25/04/2019 à 15:35, Xavier Guimard a écrit : >>> Package: release.debian.org >>> Severity: normal >>> User: release.debian@packages.debian.org >>> Usertags: unblock >>> >>> Please unblock package node-fresh

Bug#927959: unblock: node-fresh/0.2.0-2

2019-04-26 Thread Xavier
Le 25/04/2019 à 15:35, Xavier Guimard a écrit : > Package: release.debian.org > Severity: normal > User: release.debian@packages.debian.org > Usertags: unblock > > Please unblock package node-fresh > > Hi all, > > node-fresh is vulnerable to CVE-2017-16119 (#927715). Vulnerability is > due t

Bug#927959: unblock: node-fresh/0.2.0-2

2019-04-26 Thread Xavier
Le 26/04/2019 à 17:41, Xavier a écrit : > Le 25/04/2019 à 15:35, Xavier Guimard a écrit : >> Package: release.debian.org >> Severity: normal >> User: release.debian@packages.debian.org >> Usertags: unblock >> >> Please unblock package node-fresh >> >> Hi all, >> >> node-fresh is vulnerable to C

Bug#927959: unblock: node-fresh/0.2.0-2

2019-04-25 Thread Xavier Guimard
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: unblock Please unblock package node-fresh Hi all, node-fresh is vulnerable to CVE-2017-16119 (#927715). Vulnerability is due to Node.js regexp parsing DDOS. I imported and adapted upstream patch t