[automatic] Publish and update 3 advisories for LibSSH2_jll and OpenSSH_jll #198
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This action searched
--project=libssh2
, checking 15 (+0) advisories from NVD and 9 (+0) from EUVD for advisories that pertain here. It identified 3 advisories as being related to the Julia package(s): LibSSH2_jll, and OpenSSH_jll.3 advisories found concrete vulnerable ranges
["< 1.10.1+0"]
. Its latest version (1.11.3+1) has components: {libssh2 = "1.11.1"}[">= 1.10.1+0, < 1.11.0+0"]
. Its latest version (1.11.3+1) has components: {libssh2 = "1.11.1"}CVE-2023-48795 for packages: LibSSH2_jll, and OpenSSH_jll["< 1.11.3+0"]
. Its latest version (1.11.3+1) has components: {libssh2 = "1.11.1"}libssh:libssh
. Its latest version (0.11.3+0) has components: {libssh = "0.11.3"}["< 9.9.1+0"]
. Its latest version (10.2.1+0) has components: {openssh = "10.2p1"}