aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorKai Knoblich <kai@FreeBSD.org>2024-04-28 13:54:32 +0000
committerKai Knoblich <kai@FreeBSD.org>2024-04-28 14:06:37 +0000
commitc91e00f9e630db8dc4ba6e7417ca9ca27793867e (patch)
tree2db6a9be2db69d2b12e03f7b5a9b852a1cee68c4
parentf4bd1ce2e80ab85cf0c19713f41a0a917a65789b (diff)
downloadports-c91e00f9e630db8dc4ba6e7417ca9ca27793867e.tar.gz
ports-c91e00f9e630db8dc4ba6e7417ca9ca27793867e.zip
security/vuxml: Amend previous commit 3b46eb72e1df
Add a missing paragraph, which was not found by "make validate" before committing. Fixes: 3b46eb72e1df security/vuxml: Document www/py-social-auth-app-django vulnerability
-rw-r--r--security/vuxml/vuln/2024.xml1
1 files changed, 1 insertions, 0 deletions
diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml
index 13bc01b83dfc..b09536e6f506 100644
--- a/security/vuxml/vuln/2024.xml
+++ b/security/vuxml/vuln/2024.xml
@@ -11,6 +11,7 @@
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
+ <p>GitHub Advisory Database:</p>
<blockquote cite="https://nvd.nist.gov/vuln/detail/CVE-2024-32879">
<p>Python Social Auth is a social authentication/registration mechanism. Prior to version 5.4.1, due to default case-insensitive collation in MySQL or MariaDB databases, third-party authentication user IDs are not case-sensitive and could cause different IDs to match. This issue has been addressed by a fix released in version 5.4.1. An immediate workaround would be to change collation of the affected field.</p>
</blockquote>