oss-sec mailing list archives

Re: Nokogiri security update v1.10.3


From: Florian Weimer <fweimer () redhat com>
Date: Tue, 23 Apr 2019 11:00:27 +0200

* Mike Dalessio:

This is a security release. It addresses a CVE in upstream libxslt rated as
"Priority: medium" by Canonical, and "NVD Severity: high" by Debian. More
details are available below.

Note that the Debian security tracker only relays what NVD provides in
this field.  It is not updated if a separate review yields different
results.

Thanks,
Florian


Current thread: