• Bug#1086042: openrefine-butterfly: CVE-2024-47883

    From Markus Koschany@21:1/5 to All on Thu Jan 2 18:10:01 2025
    Control: severity -1 important


    Openrefine (Butterfly component) is not a internet-facing server application but a single-user app thus typical openrefine users don't face the same risks. Even network access is not required to use openrefine in production. As with previous CVE a normal stable update should be sufficient in my opinion. An update for unstable will follow shortly.

    -----BEGIN PGP SIGNATURE-----

    iQKTBAABCgB9FiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAmd2xdhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQACgkQ2a0UuVE7 UeS1/w/+M2JUY7EQkXoE7lpLqyDhFokQanyUEs90UAQHi0tqHcK7770gQ5Lv2uvp E8YbdcBH+a2xRMPZ/fZxDTIfV8lwwxJKwYraTaXjzpMp+U+hu8T/7lElc6PSg4kM Y8qQrwUTAAba7yxv3y8mc/on7Qi1CEOQv4zsQtpApij6C4wIuP96aHTy4OrpGbqm lzicZLT4lkR28OlG/aPYio1BPSKd4oH4pWy2XR7Vr8OlcC8DbGb4cN80j1+Ol9LZ G8ZKpJPrNCDft4oTIRgggFifaCpwMd65OglX3LTYBOpesid1S8hI/ePkFKq9CNa2 7JvasTj1tcl2YzbkB6g18NY+4s/5jpX1PYz+RjF/bsLd9cVl4CndI6P1U90u6ji/ gqJ/tENC/hVq1S3+IAIqF1yZoMX4zMdagv/j7DqnluFg8pg/1L/e1aDTFzv0FlEw BW4KB0JpjcIESoOXcgTv+zJy/r6CxpVivlvK0k+TEt8Vbd+En53XYotSDWtQpcnh AjBZkvZmqJK7JQXbdwswOS2CPRoDRA39q4iKOuLc2jWl0DuvcMwAxAezfwkPqHZc grCcrSSe1o9H9QcaYq2qxxYXS1QPa9w3MjSM/u2e5SjaeDWgqHNk0vhpra8EO1Yj vc2Yjfy2Wps84Xle8iJy+IiT+dSAGTKPN2QVRNE/EeyJmCQwgLo=
    =osS1
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)