[Git][security-tracker-team/security-tracker][master] Reserve DLA-4156-1 for openssh
Colin Watson (@cjwatson)
cjwatson at debian.org
Thu May 8 12:08:04 BST 2025
Colin Watson pushed to branch master at Debian Security Tracker / security-tracker
Commits:
da3a5dfe by Colin Watson at 2025-05-08T12:07:57+01:00
Reserve DLA-4156-1 for openssh
- - - - -
2 changed files:
- data/CVE/list
- data/DLA/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8951,7 +8951,6 @@ CVE-2025-3023
CVE-2025-32728 (In sshd in OpenSSH before 10.0, the DisableForwarding directive does n ...)
- openssh 1:10.0p1-1 (bug #1102603)
[bookworm] - openssh <no-dsa> (Minor issue)
- [bullseye] - openssh <postponed> (Minor issue, local X11/agent forwarding disabled by default in the client)
NOTE: https://lists.mindrot.org/pipermail/openssh-unix-dev/2025-April/041879.html
NOTE: Fixed by: https://github.com/openssh/openssh-portable/commit/fc86875e6acb36401dfc1dfb6b628a9d1460f367 (V_10_0_P1)
CVE-2025-32387 (Helm is a package manager for Charts for Kubernetes. A JSON Schema fil ...)
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[08 May 2025] DLA-4156-1 openssh - security update
+ {CVE-2025-32728}
+ [bullseye] - openssh 1:8.4p1-5+deb11u5
[08 May 2025] DLA-4155-1 libapache2-mod-auth-openidc - security update
{CVE-2025-3891}
[bullseye] - libapache2-mod-auth-openidc 2.4.9.4-0+deb11u6
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da3a5dfe6a84662f4bb184386b89c9d670d4e8e7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da3a5dfe6a84662f4bb184386b89c9d670d4e8e7
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250508/5a42df2b/attachment.htm>
More information about the debian-security-tracker-commits
mailing list