Bug#1072124: gnome-shell: CVE-2024-36472

Salvatore Bonaccorso carnil at debian.org
Sat Aug 17 13:41:07 BST 2024


Hi,

On Sat, Aug 17, 2024 at 12:18:46PM +0100, John Steeves wrote:
> Hello,
> I noticed that Ubuntu recently updated their supported versions of
> gnome-shell to patch this vulnerability. However, it hasn't been patched in
> the gnome-shell packages in the Debain repos as of yet.
> 
> Is there a roadmap for when gnome-shell 43.9 will be patched for Debian
> stable (bookworm)?

https://www.debian.org/security/faq#cve-severity-assessment should
almost answer your question. 

That said, as mentioned in the notes of the CVE, no DSA is planned but
a fix could be done via an upcoming point release.

Regards,
Salvatore



More information about the pkg-gnome-maintainers mailing list