michaelrsweet / htmldoc

HTML Conversion Software
https://www.msweet.org/htmldoc
GNU General Public License v2.0
206 stars 46 forks source link

Please make a new release #488

Closed clausecker closed 2 years ago

clausecker commented 2 years ago

It seems like there are at least three CVEs open in 2.9.15 (CVE-2022-0534, CVE-2022-24191, CVE-2022-27114, and CVE-2022-28085) that have been fixed in the meanwhile. Please consider making a new release to address these.

michaelrsweet commented 2 years ago

This is now done, but please remember the following from the license:

This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.

I don't get paid to do this, I am just maintaining and building this software in my free time. And I am certainly not rushing to post an update for some BS CVEs that don't have any chance of doing anything besides stopping a PDF file from being generated.

clausecker commented 2 years ago

Thank you for doing this anyway!