1
0
mirror of https://gitlab.com/fdroid/fdroidserver.git synced 2024-09-21 04:10:37 +02:00

safety: make CVE-2024-5569 just a warning

We get these packages from Debian, zipp is not used in production, and its
only a DoS.
This commit is contained in:
Hans-Christoph Steiner 2024-08-19 11:59:43 +02:00
parent 3a1bbb54aa
commit ef247bc97a

View File

@ -26,3 +26,6 @@ security:
70612: 70612:
reason: jinja2 is not used by fdroidserver, nor any dependencies I could find via debtree and pipdeptree. reason: jinja2 is not used by fdroidserver, nor any dependencies I could find via debtree and pipdeptree.
expires: '2026-05-31' expires: '2026-05-31'
72132:
reason: We get these packages from Debian, zipp is not used in production, and its only a DoS.
expires: '2026-08-31'