[Git][security-tracker-team/security-tracker][master] gimp/luanti/opam DSAs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Apr 17 22:11:30 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9afbfc98 by Moritz Mühlenhoff at 2026-04-17T23:11:08+02:00
gimp/luanti/opam DSAs

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
Binary files a/data/CVE/list and b/data/CVE/list differ


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,14 @@
+[17 Apr 2026] DSA-6217-1 luanti - security update
+	{CVE-2026-40959 CVE-2026-40960}
+	[trixie] - luanti 5.10.0+dfsg-5+deb13u1
+[17 Apr 2026] DSA-6216-1 opam - security update
+	{CVE-2026-41082}
+	[bookworm] - opam 2.1.2-1+deb12u1
+	[trixie] - opam 2.3.0-1+deb13u1
+[17 Apr 2026] DSA-6215-1 gimp - security update
+	{CVE-2026-4150 CVE-2026-4152 CVE-2026-4153}
+	[bookworm] - gimp 2.10.34-1+deb12u10
+	[trixie] - gimp 3.0.4-3+deb13u8
 [17 Apr 2026] DSA-6214-1 chromium - security update
 	{CVE-2026-6296 CVE-2026-6297 CVE-2026-6298 CVE-2026-6299 CVE-2026-6300 CVE-2026-6301 CVE-2026-6302 CVE-2026-6303 CVE-2026-6304 CVE-2026-6305 CVE-2026-6306 CVE-2026-6307 CVE-2026-6308 CVE-2026-6309 CVE-2026-6310 CVE-2026-6311 CVE-2026-6312 CVE-2026-6313 CVE-2026-6314 CVE-2026-6315 CVE-2026-6316 CVE-2026-6317 CVE-2026-6318 CVE-2026-6319 CVE-2026-6358 CVE-2026-6359 CVE-2026-6360 CVE-2026-6361 CVE-2026-6362 CVE-2026-6363 CVE-2026-6364}
 	[bookworm] - chromium 147.0.7727.101-1~deb12u1


=====================================
data/dsa-needed.txt
=====================================
@@ -33,8 +33,6 @@ frr
 gh/oldstable
   Santiago Vila might work on preparing an update
 --
-gimp (jmm)
---
 git-lfs
 --
 imagemagick
@@ -52,8 +50,6 @@ linux (carnil)
   Wait until more issues have piled up, though try to regulary rebase for point
   releases to more 6.1.y versions
 --
-luanti (jmm)
---
 mbedtls/oldstable
 --
 mupdf (carnil)
@@ -65,8 +61,6 @@ nghttp2
 --
 nodejs/oldstable
 --
-opam (jmm)
---
 opennds/oldstable
   pinged maintainer, but no reply yet. should most probably be bumped to 10.x
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9afbfc98576d64d66deecbe4db27fccdf96100ce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9afbfc98576d64d66deecbe4db27fccdf96100ce
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260417/f0b3f5ef/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list