[Git][security-tracker-team/security-tracker][master] Reserve DLA-4444-1 for apache-log4j2

Markus Koschany (@apo) apo at debian.org
Mon Jan 19 22:25:08 GMT 2026



Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ee8b10e1 by Markus Koschany at 2026-01-19T23:24:59+01:00
Reserve DLA-4444-1 for apache-log4j2

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[19 Jan 2026] DLA-4444-1 apache-log4j2 - security update
+	{CVE-2025-68161}
+	[bullseye] - apache-log4j2 2.17.1-1~deb11u2
 [19 Jan 2026] DLA-4443-1 dcmtk - security update
 	{CVE-2025-14607 CVE-2025-14841}
 	[bullseye] - dcmtk 3.6.5-1+deb11u6


=====================================
data/dla-needed.txt
=====================================
@@ -47,9 +47,6 @@ ansible
   NOTE: 20241123: Made a partial release. only CVE-2024-11079 needed but more upstream backport work needed (rouca)
   NOTE: 20250422: Testing/bisecting will take more time, please keep it assigned to me (lee)
 --
-apache-log4j2 (Markus Koschany)
-  NOTE: 20251229: Added by Front-Desk (apo)
---
 ca-certificates
   NOTE: 20250613: Added by Front-Desk (rouca)
   NOTE: 20250613: Lack some certificates #1095913 (rouca/FD)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee8b10e16913092a5cfb1c143acd469859a59f8f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee8b10e16913092a5cfb1c143acd469859a59f8f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260119/98614302/attachment.htm>


More information about the debian-security-tracker-commits mailing list