[Git][security-tracker-team/security-tracker][master] Reserve DLA-4444-1 for apache-log4j2
Markus Koschany (@apo)
apo at debian.org
Mon Jan 19 22:25:08 GMT 2026
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ee8b10e1 by Markus Koschany at 2026-01-19T23:24:59+01:00
Reserve DLA-4444-1 for apache-log4j2
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[19 Jan 2026] DLA-4444-1 apache-log4j2 - security update
+ {CVE-2025-68161}
+ [bullseye] - apache-log4j2 2.17.1-1~deb11u2
[19 Jan 2026] DLA-4443-1 dcmtk - security update
{CVE-2025-14607 CVE-2025-14841}
[bullseye] - dcmtk 3.6.5-1+deb11u6
=====================================
data/dla-needed.txt
=====================================
@@ -47,9 +47,6 @@ ansible
NOTE: 20241123: Made a partial release. only CVE-2024-11079 needed but more upstream backport work needed (rouca)
NOTE: 20250422: Testing/bisecting will take more time, please keep it assigned to me (lee)
--
-apache-log4j2 (Markus Koschany)
- NOTE: 20251229: Added by Front-Desk (apo)
---
ca-certificates
NOTE: 20250613: Added by Front-Desk (rouca)
NOTE: 20250613: Lack some certificates #1095913 (rouca/FD)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee8b10e16913092a5cfb1c143acd469859a59f8f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee8b10e16913092a5cfb1c143acd469859a59f8f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260119/98614302/attachment.htm>
More information about the debian-security-tracker-commits
mailing list