Two CVEs in qtbase-opensource-src

Lisandro Damián Nicanor Pérez Meyer perezmeyer at gmail.com
Thu Jan 30 15:19:31 GMT 2020


Hi!

On Thu, 30 Jan 2020 at 11:44, Moritz Mühlenhoff <jmm at inutil.org> wrote:
>
> On Thu, Jan 30, 2020 at 11:25:02AM -0300, Lisandro Damián Nicanor Pérez Meyer wrote:
> > Hi! Two security bugs where found in qtbase-opensource-src:
> >
> > https://lists.qt-project.org/pipermail/development/2020-January/038521.html
>
> > Please noe that the attached debdiff is made againt the current version in
> > buster p-u, already accepted by SRM.
>
> Hi Lisandro,
> debdiff looks good, please upload to security-master!

Do I need to do a binary upload or source only is enough? (apart from
including the source in the upload, first security upload if I'm not
mistaken).

> Stretch is still supported for another ~ half year, could you also prepare
> a stretch-security update for CVE-2020-0569?

Sure. I'll also see to prepare a qt4-x11 upload too. I might even do
an unstable one...

-- 
Lisandro Damián Nicanor Pérez Meyer
http://perezmeyer.com.ar/
http://perezmeyer.blogspot.com/



More information about the pkg-kde-talk mailing list