Univention Bugzilla – Bug 53038
underscore: Multiple issues (4.4)
Last modified: 2021-04-14 12:06:16 CEST
New Debian underscore 1.8.3~dfsg-1+deb9u1 fixes: This update addresses the following issue: * Arbitrary code execution via the template function (CVE-2021-23358)
--- mirror/ftp/4.3/unmaintained/4.3-0/source/underscore_1.8.3~dfsg-1.dsc +++ apt/ucs_4.4-0-errata4.4-7/source/underscore_1.8.3~dfsg-1+deb9u1.dsc @@ -1,3 +1,8 @@ +1.8.3~dfsg-1+deb9u1 [Wed, 31 Mar 2021 09:49:26 +0200] Yadd <yadd@debian.org>: + + * Team upload + * Fix arbitrary code execution (Closes: #986171) + 1.8.3~dfsg-1 [Wed, 31 Aug 2016 00:53:15 +0200] Jonas Smedegaard <dr@jones.dk>: [ upstream ] <http://piuparts.knut.univention.de/4.4-7/#3078582592803976883>
OK: yaml OK: announce_errata OK: patch OK: piuparts
<https://errata.software-univention.de/#/?erratum=4.4x955>