[Git][security-tracker-team/security-tracker][master] Reserve DLA-4389-1 for pytorch

Daniel Leidert (@dleidert) dleidert at debian.org
Mon Dec 1 01:09:36 GMT 2025



Daniel Leidert pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6a7a2606 by Daniel Leidert at 2025-12-01T02:08:56+01:00
Reserve DLA-4389-1 for pytorch

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[01 Dec 2025] DLA-4389-1 pytorch - security update
+	{CVE-2025-32434}
+	[bullseye] - pytorch 1.7.1-7+deb11u1
 [30 Nov 2025] DLA-4365-2 unbound - security update
 	{CVE-2025-11411}
 	[bullseye] - unbound 1.13.1-1+deb11u7


=====================================
data/dla-needed.txt
=====================================
@@ -326,7 +326,8 @@ python-mistralclient (dleidert)
 pytorch (dleidert)
   NOTE: 20250422: Added by Front-Desk (rouca)
   NOTE: 20250422: CVE-2025-32434 RCE need to be fixed. DoS may be postponed (rouca/FD)
-  NOTE: 20251020: wip (dleidert)
+  NOTE: 20251201: DLA-4389-1 has been released and fixes CVE-2025-32434 (dleidert)
+  NOTE: 20251201: Currrently trying to figure out how to proceed with the >20 open CVEs in Bullseye..Sid (dleidert)
 --
 rails (rouca)
   NOTE: 20250105: Added by Front-Desk (apo)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6a7a26060db97da6612b9b2edcb54980cc0a83ef

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6a7a26060db97da6612b9b2edcb54980cc0a83ef
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251201/dff86fef/attachment.htm>


More information about the debian-security-tracker-commits mailing list