summary refs log tree commit diff
path: root/pkgs/applications/office
diff options
context:
space:
mode:
authorImran Hossain <hi@imranh.org>2023-10-22 17:28:56 -0400
committerImran Hossain <hi@imranh.org>2023-10-22 17:35:40 -0400
commit9438baa49d527dd7f748e90bdfea576cd1daa0db (patch)
treeeb074f942e40afc713408a46d847d8b7bc672dcd /pkgs/applications/office
parenta6207181cf6300566bc15f38cf8e4d4c7ce6bc90 (diff)
downloadnixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar.gz
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar.bz2
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar.lz
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar.xz
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.tar.zst
nixpkgs-9438baa49d527dd7f748e90bdfea576cd1daa0db.zip
zotero: mark as insecure (CVE-2023-5217)
Zotero 6 is based on Firefox 60 and has not patched this vulnerability.
The next version is based on Firefox 102 (ESR) and has patched this, but
is is still in beta.

See also NixOS/nixpkgs#258048.
Diffstat (limited to 'pkgs/applications/office')
-rw-r--r--pkgs/applications/office/zotero/default.nix1
1 files changed, 1 insertions, 0 deletions
diff --git a/pkgs/applications/office/zotero/default.nix b/pkgs/applications/office/zotero/default.nix
index 9be6994d6a0..506b934d77c 100644
--- a/pkgs/applications/office/zotero/default.nix
+++ b/pkgs/applications/office/zotero/default.nix
@@ -153,5 +153,6 @@ stdenv.mkDerivation rec {
     license = licenses.agpl3Only;
     platforms = platforms.linux;
     maintainers = with maintainers; [ i077 ];
+    knownVulnerabilities = [ "CVE-2023-5217" ];
   };
 }