[Git][security-tracker-team/security-tracker][master] Reserve DLA-3992-1 for libsoup2.4
Sean Whitton (@spwhitton)
spwhitton at debian.org
Thu Dec 12 07:06:42 GMT 2024
Sean Whitton pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ac8ca682 by Sean Whitton at 2024-12-12T15:04:08+08:00
Reserve DLA-3992-1 for libsoup2.4
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[12 Dec 2024] DLA-3992-1 libsoup2.4 - security update
+ {CVE-2024-52530 CVE-2024-52531 CVE-2024-52532}
+ [bullseye] - libsoup2.4 2.72.0-2+deb11u1
[11 Dec 2024] DLA-3991-1 upx-ucl - security update
{CVE-2023-23456}
[bullseye] - upx-ucl 3.96-2+deb11u1
=====================================
data/dla-needed.txt
=====================================
@@ -122,12 +122,6 @@ libpgjava (Adrian Bunk)
NOTE: 20241206: CVE-2022-31197, CVE-2022-41946, and CVE-2024-1597 were fixed in buster, are still open (no-dsa) in bullseye (all 3) and bookworm (only CVE-2024-1597)
NOTE: 20241206: https://salsa.debian.org/lts-team/lts-updates-tasks/-/issues/168
--
-libsoup2.4 (Sean Whitton)
- NOTE: 20241121: Added by Front-Desk (Beuc)
- NOTE: 20241121: Fix in unstable first, following libsoup3.
- NOTE: 20241121: Consider proposing fixes for bookworm too. (Beuc/front-desk)
- NOTE: 20241210: Waiting for DELAYED/5 NMU for sid (spwhitton).
---
libxstream-java (Markus Koschany)
NOTE: 20241110: Added by Front-Desk (apo)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ac8ca682668a7cb92c88457626f42c1e89118d3a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ac8ca682668a7cb92c88457626f42c1e89118d3a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241212/243bd3d1/attachment.htm>
More information about the debian-security-tracker-commits
mailing list