{"affected":[{"ecosystem_specific":{"binaries":[{"viewvc":"1.1.28-lp152.4.3.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.2","name":"viewvc","purl":"pkg:rpm/opensuse/viewvc&distro=openSUSE%20Leap%2015.2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.1.28-lp152.4.3.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for viewvc fixes the following issues:\n\n- update to 1.1.28 (boo#1167974, CVE-2020-5283):\n  * security fix: escape subdir lastmod file name (#211)\n  * fix standalone.py first request failure (#195)\n  * suppress stack traces (with option to show) (#140)\n  * distinguish text/binary/image files by icons (#166, #175)\n  * colorize alternating file content lines (#167)\n  * link to the instance root from the ViewVC logo (#168)\n  * display directory and root counts, too (#169)\n  * fix double fault error in standalone.py (#157)\n  * support timezone offsets with minutes piece (#176)\n\nThis update was imported from the openSUSE:Leap:15.1:Update update project.","id":"openSUSE-SU-2021:0123-1","modified":"2021-01-19T23:24:07Z","published":"2021-01-19T23:24:07Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/MAJYDJLUUCZVZ2IZJFFWFQ663RENRLLG/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1167974"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-5283"}],"related":["CVE-2020-5283"],"summary":"Security update for viewvc","upstream":["CVE-2020-5283"]}