Skip to content

Incorrect version range for CVE-2019-17383 #829

Closed
@colbybr

Description

@colbybr

For ‎CVE-2019-17383 the current fixed version range of >= 2.0.4 is incorrect. Version 1.5.3 is additionally a fixed version [1] [2] [3]. It should be adjusted to =1.5.3, >= 2.0.4.

References:
[1] GHSA-49pj-69vf-c689
[2] dspinhirne/netaddr-rb#29
[3] https://nvd.nist.gov/vuln/detail/CVE-2019-17383

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions