Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
Add fixing version information for CVE-2018-3740/ruby-sanitize
· b492f000
Salvatore Bonaccorso
authored
Dec 26, 2018
b492f000
CVE-2018-3740/ruby-sanitize: Reference fixes for 2.1.x version
· d263bc08
Salvatore Bonaccorso
authored
Dec 26, 2018
d263bc08
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
d263bc08
...
...
@@ -51888,7 +51888,8 @@ CVE-2018-3740 (A specially crafted HTML fragment can cause Sanitize gem for Ruby
- ruby-sanitize 4.6.6-1 (bug #893610)
[jessie] - ruby-sanitize <ignored> (Only occurs with libxml2 >= 2.9.2, jessie has 2.9.1)
NOTE: https://github.com/rgrove/sanitize/issues/176
NOTE: https://github.com/rgrove/sanitize/commit/01629a162e448a83d901456d0ba8b65f3b03d46e
NOTE: https://github.com/rgrove/sanitize/commit/01629a162e448a83d901456d0ba8b65f3b03d46e (v4.6.3)
NOTE: Fixes for 2.1.x: https://github.com/rgrove/sanitize/compare/v2.1.0...v2.1.1
NOTE: Only an issue in combination with libxml2 >= 2.9.2
NOTE: The 'fragment' method was renamed from 'clean' method in earlier version
NOTE: in v3.0.0