1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-11-19 00:13:33 +00:00

security/vuxml: Amend previous commit 3b46eb72e1

Add a missing paragraph, which was not found by "make validate" before
committing.

Fixes:	3b46eb72e1 security/vuxml: Document www/py-social-auth-app-django vulnerability
This commit is contained in:
Kai Knoblich 2024-04-28 15:54:32 +02:00
parent f4bd1ce2e8
commit c91e00f9e6

View File

@ -11,6 +11,7 @@
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>GitHub Advisory Database:</p>
<blockquote cite="https://nvd.nist.gov/vuln/detail/CVE-2024-32879">
<p>Python Social Auth is a social authentication/registration mechanism. Prior to version 5.4.1, due to default case-insensitive collation in MySQL or MariaDB databases, third-party authentication user IDs are not case-sensitive and could cause different IDs to match. This issue has been addressed by a fix released in version 5.4.1. An immediate workaround would be to change collation of the affected field.</p>
</blockquote>