Candidate: CVE-2020-6817 PublicDate: 2020-04-01 00:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6817 https://github.com/mozilla/bleach/security/advisories/GHSA-vqhp-cxgc-6wmm https://bugzilla.mozilla.org/show_bug.cgi?id=1623633 https://github.com/mozilla/bleach/commit/d6018f2539d271963c3e7f54f36ef11900363c69 https://github.com/mozilla/bleach/commit/6e74a5027b57055cdaeb040343d32934121392a7 Description: [Regular expression denial of service] Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=955388 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_python-bleach: upstream_python-bleach: released (3.1.4-1) precise/esm_python-bleach: DNE trusty_python-bleach: ignored (out of standard support) trusty/esm_python-bleach: DNE xenial_python-bleach: ignored (end of standard support, was needed) bionic_python-bleach: needed eoan_python-bleach: ignored (reached end-of-life) focal_python-bleach: needed groovy_python-bleach: not-affected (3.1.4-1) hirsute_python-bleach: not-affected (3.1.4-1) impish_python-bleach: not-affected (3.1.4-1) jammy_python-bleach: not-affected (3.1.4-1) devel_python-bleach: not-affected (3.1.4-1)