[Git][security-tracker-team/security-tracker][master] Reserve DLA-4156-1 for openssh

Colin Watson (@cjwatson) cjwatson at debian.org
Thu May 8 12:08:04 BST 2025



Colin Watson pushed to branch master at Debian Security Tracker / security-tracker


Commits:
da3a5dfe by Colin Watson at 2025-05-08T12:07:57+01:00
Reserve DLA-4156-1 for openssh

- - - - -


2 changed files:

- data/CVE/list
- data/DLA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8951,7 +8951,6 @@ CVE-2025-3023
 CVE-2025-32728 (In sshd in OpenSSH before 10.0, the DisableForwarding directive does n ...)
 	- openssh 1:10.0p1-1 (bug #1102603)
 	[bookworm] - openssh <no-dsa> (Minor issue)
-	[bullseye] - openssh <postponed> (Minor issue, local X11/agent forwarding disabled by default in the client)
 	NOTE: https://lists.mindrot.org/pipermail/openssh-unix-dev/2025-April/041879.html
 	NOTE: Fixed by: https://github.com/openssh/openssh-portable/commit/fc86875e6acb36401dfc1dfb6b628a9d1460f367 (V_10_0_P1)
 CVE-2025-32387 (Helm is a package manager for Charts for Kubernetes. A JSON Schema fil ...)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[08 May 2025] DLA-4156-1 openssh - security update
+	{CVE-2025-32728}
+	[bullseye] - openssh 1:8.4p1-5+deb11u5
 [08 May 2025] DLA-4155-1 libapache2-mod-auth-openidc - security update
 	{CVE-2025-3891}
 	[bullseye] - libapache2-mod-auth-openidc 2.4.9.4-0+deb11u6



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da3a5dfe6a84662f4bb184386b89c9d670d4e8e7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da3a5dfe6a84662f4bb184386b89c9d670d4e8e7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250508/5a42df2b/attachment.htm>


More information about the debian-security-tracker-commits mailing list