Bug#930099: pyxdg: CVE-2019-12761

2021-03-26 Thread Andreas Beckmann
On Sun, 18 Oct 2020 15:02:50 +0200 Salvatore Bonaccorso wrote: close 930099 0.26-1 Should this be fixed in stretch and buster, too? Right now jessie-lts has a higher version than stretch(-lts), "breaking" upgrades. pyxdg | 0.25-4| jessie | source pyxdg | 0.25-4

Bug#930099: pyxdg: CVE-2019-12761

2019-06-06 Thread Salvatore Bonaccorso
Source: pyxdg Version: 0.25-5 Severity: normal Tags: security upstream Control: found -1 0.25-4 Hi, The following vulnerability was published for pyxdg, as far I understand though the impact would be limited as one would need to use pyxdg with untrusted menu files? CVE-2019-12761[0]: | A code in