diff --git a/marked.spec b/marked.spec index abfd380..dc58fd3 100644 --- a/marked.spec +++ b/marked.spec @@ -118,8 +118,14 @@ npm run test %{_jsdir}/%{name} %changelog -* Thu May 21 2020 Stuart Gathman - 1.1.0-1 +* Fri May 22 2020 Stuart Gathman - 1.1.0-1 - New upstream release +- CVE-2015-8854 ReDos fixed in 0.3.9 +- bz#1529736 bz#1529738 - XSS w/ mangling disabled fixed in 0.3.9 +- bz#1702320 ReDos vuln - CVE removed, problem not in marked +- CVE-2016-1000013 fixed in 0.7.0 +- CVE-2017-17461 ReDos in dependency (still open) +- CVE-2017-1000427 XSS via data URI fixed in 0.3.7 * Wed Jan 29 2020 Fedora Release Engineering - 0.3.2-12 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild