[Debian-med-packaging] Bug#1100986: xmedcon: CVE-2025-2581

Étienne Mollier emollier at debian.org
Sat Mar 22 18:46:21 GMT 2025


Control: tags -1 + fixed-upstream pending bookworm bullseye
Control: found -1 0.23.0-gtk3+dfsg-1+deb12u1
Control: found -1 0.16.3+dfsg-1+deb11u1

Greetings,

I am working on updating xmedcon in sid, which should resolve
the problem for the upcoming trixie.  I identified the patch
needed a slight porting effort to bookworm, but applies then
seamlessly on bullseye.  I plan to liaise with the release team
once done with the sid update and making sure there are no
obvious issues with patch ported to xmedcon 0.23.0.

I don't really have plans to work on bullseye port, but the
patch is in attachment in case someone from the LTS team wants
to take over.

Have a nice day,  :)
-- 
  .''`.  Étienne Mollier <emollier at debian.org>
 : :' :  pgp: 8f91 b227 c7d6 f2b1 948c  8236 793c f67e 8f0d 11da
 `. `'   sent from /dev/pts/4, please excuse my verbosity
   `-    on air: Dream Theater - A Change Of Seasons
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2025-2581.patch
Type: text/x-diff
Size: 1005 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/debian-med-packaging/attachments/20250322/490df81d/attachment.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/debian-med-packaging/attachments/20250322/490df81d/attachment.sig>


More information about the Debian-med-packaging mailing list