Closed
Description
For CVE-2019-17383 the current fixed version range of >= 2.0.4
is incorrect. Version 1.5.3 is additionally a fixed version [1] [2] [3]. It should be adjusted to =1.5.3
, >= 2.0.4
.
References:
[1] GHSA-49pj-69vf-c689
[2] dspinhirne/netaddr-rb#29
[3] https://nvd.nist.gov/vuln/detail/CVE-2019-17383