Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Debian 10 Buster DLA-3212-1 Critical: Twisted HTML Injection Issue

debian lts
Calendar Grey November 28, 2022
Dist Debian Esm H88
Explore the latest Debian Long Term Support notification regarding twisted, emphasizing an HTML injection vulnerability present in Python applications and the recommended updates.
It was discovered that twisted, a framework for internet applications written in Python, was prone to an HTML injection when displaying the HTTP Host header in an error page

Summary

We recommend that you upgrade your twisted packages.

For the detailed security status of twisted please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/twisted

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
critical
Lowest
Low
Medium
High
Critical

-------------------------------------------------------------------------Package: twisted
Version: 18.9.0-3+deb10u2
CVE ID: CVE-2022-39348
Debian Bug:

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here