Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

update: libyaml #1490

Closed
dongsupark opened this issue Jul 1, 2024 · 2 comments
Closed

update: libyaml #1490

dongsupark opened this issue Jul 1, 2024 · 2 comments
Labels
advisory/upstream-blocked blocked by upstream projects advisory security advisory cvss/CRITICAL >= 9 assessed CVSS security security concerns

Comments

@dongsupark
Copy link
Member

dongsupark commented Jul 1, 2024

Name: libyaml
CVEs: CVE-2024-35325, CVE-2024-35326
CVSSs: n/a, 9.8
Action Needed: TBD

Summary:

refmap.gentoo: TBD

@dongsupark dongsupark added security security concerns advisory security advisory labels Jul 1, 2024
@dongsupark dongsupark added the cvss/CRITICAL >= 9 assessed CVSS label Aug 9, 2024
@dongsupark
Copy link
Member Author

CVE-2024-35326 has now critical severity.
However, upstream libyaml maintainer seems to think it is not a valid issue, including other similar ones.

@dongsupark
Copy link
Member Author

Both CVEs were withdrawn, closing.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
advisory/upstream-blocked blocked by upstream projects advisory security advisory cvss/CRITICAL >= 9 assessed CVSS security security concerns
Projects
None yet
Development

No branches or pull requests

1 participant