diff --git a/advisories/hackage/bzlib/HSEC-2024-0002.md b/advisories/hackage/bzlib/HSEC-2024-0002.md index 10f33af0..d9e49d1f 100644 --- a/advisories/hackage/bzlib/HSEC-2024-0002.md +++ b/advisories/hackage/bzlib/HSEC-2024-0002.md @@ -27,6 +27,7 @@ cvss = "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" [[affected.versions]] introduced = "0.4" +fixed = "0.5.2.0" [[affected]] package = "bz2" @@ -34,6 +35,7 @@ cvss = "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" [[affected.versions]] introduced = "0.1.0.0" +fixed = "1.0.1.1" [[affected]] package = "bzlib-conduit" @@ -41,6 +43,7 @@ cvss = "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" [[affected.versions]] introduced = "0.1.0.0" +fixed = "0.3.0.3" ``` # out-of-bounds write when there are many bzip2 selectors