Bug#1072124: gnome-shell: CVE-2024-36472

Jeremy Bícha jeremy.bicha at canonical.com
Fri Sep 6 19:16:44 BST 2024


On Sat, Aug 17, 2024 at 8:45 AM Salvatore Bonaccorso <carnil at debian.org> wrote:
> That said, as mentioned in the notes of the CVE, no DSA is planned but
> a fix could be done via an upcoming point release.

We ran out of time with other priorities to copy Ubuntu's gnome-shell
hardening into Debian 12.7. There is probably enough time to get it
into Debian 12.8 since 12.8 won't be released until at least late
October.

I'm landing the changes in the 47 packaging for Experimental now and
then we need to either get 47 into Unstable (my preference) or
cherry-pick them for the 46 packaging.

https://ubuntu.com/security/notices/USN-6963-1

Thank you,
Jeremy Bícha



More information about the pkg-gnome-maintainers mailing list