openSUSE-SU-2021:0451-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:0451-1
openSUSE-SU-2021:0451-1
Summary: Security update for python-markdown2
Details: This update for python-markdown2 fixes the following issues: Update to 2.4.0 (boo#1181270): - [pull #377] Fixed bug breaking strings elements in metadata lists - [pull #380] When rendering fenced code blocks, also add the language-LANG class - [pull #387] Regex DoS fixes (CVE-2021-26813, boo#1183171) - Switch off failing tests (gh#trentm/python-markdown2#388), ignore failing test suite. update to 2.3.9: - [pull #335] Added header support for wiki tables - [pull #336] Reset _toc when convert is run - [pull #353] XSS fix - [pull #350] XSS fix - Add patch to fix unsanitized input for cross-site scripting (boo#1171379) This update was imported from the openSUSE:Leap:15.2:Update update project.
References: https://lists.opensuse.org/archives/list/[email protected]/thread/4AZ6CPAAHWZ74LZWHDSAXWA6O2HYCKU3/, https://bugzilla.suse.com/1171379, https://bugzilla.suse.com/1181270, https://bugzilla.suse.com/1183171, https://www.suse.com/security/cve/CVE-2021-26813
Affected packages
Package
Name: python-markdown2
Purl: pkg:rpm/suse/python-markdown2&distro=SUSE%20Package%20Hub%2015%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
