Replies: 2 comments
-
This is likely a bug in DT. Without having tested this particular constellation, I think the DT's current version comparison is generic and unable to detect the various ins and outs of ecosystem-specific versioning. #2826 would help to address that. |
Beta Was this translation helpful? Give feedback.
0 replies
-
Thanks for your answers |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
hi
i have the version 4.11.0 of DT.
i have a component :
![image](https://private-user-images.githubusercontent.com/45871334/361841692-92652cb9-6d25-40ef-a90c-4e3836480b3d.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJnaXRodWIuY29tIiwiYXVkIjoicmF3LmdpdGh1YnVzZXJjb250ZW50LmNvbSIsImtleSI6ImtleTUiLCJleHAiOjE3Mzk0NTUwOTEsIm5iZiI6MTczOTQ1NDc5MSwicGF0aCI6Ii80NTg3MTMzNC8zNjE4NDE2OTItOTI2NTJjYjktNmQyNS00MGVmLWE5MGMtNGUzODM2NDgwYjNkLnBuZz9YLUFtei1BbGdvcml0aG09QVdTNC1ITUFDLVNIQTI1NiZYLUFtei1DcmVkZW50aWFsPUFLSUFWQ09EWUxTQTUzUFFLNFpBJTJGMjAyNTAyMTMlMkZ1cy1lYXN0LTElMkZzMyUyRmF3czRfcmVxdWVzdCZYLUFtei1EYXRlPTIwMjUwMjEzVDEzNTMxMVomWC1BbXotRXhwaXJlcz0zMDAmWC1BbXotU2lnbmF0dXJlPTlhMzJiMTY4OTc2MmUyNWMwMDMyYWFjNWNlZGM5NzAyMGQ2NmY1MzhhZDQ0NzViM2E3ODdkNzUyYjNiY2I0YjEmWC1BbXotU2lnbmVkSGVhZGVycz1ob3N0In0.1pgdcYnWZ9HACeHaTlQFf6W7ZSU1rop2JMxmxh8-zt4)
and this vulnerability is raised :
the affected component of the vulnerability
![image](https://private-user-images.githubusercontent.com/45871334/361842460-3e33afc7-50e9-46cc-90b8-8614c6f5c36a.png?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.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.M2SH1WMSfsQum1iO6cRxarNnh-6eXAO_5IUkG9mzUiw)
the debian bulletin https://security-tracker.debian.org/tracker/DSA-5123-1
as we can see the version 5.2.4-1+deb10u1 fixe the issue.
could you tell me if it's an OSV issue or a DT issue ?
thanks
Beta Was this translation helpful? Give feedback.
All reactions