Bug#1027143: openimageio: CVE-2022-43592 CVE-2022-43593 CVE-2022-43594 CVE-2022-43595 CVE-2022-43596 CVE-2022-43597 CVE-2022-43598 CVE-2022-43599 CVE-2022-43600 CVE-2022-43601 CVE-2022-43602 CVE-2022-41639 CVE-2022-41649 CVE-2022-41684 CVE-2022-41794 CVE-2022-41837 CVE-2022-41838 CVE-2022-41977 CVE-2022-41981 CVE-2022-41988

Bastian Germann bage at debian.org
Wed Jan 18 18:22:27 GMT 2023


I have uploaded the latest 2.3 release to unstable and the latest 2.4 release to experimental (NEW).
I have not yet updated d/copyright, so that is a TODO for any unstable 2.4 version.

Transitions are not allowed anymore but if the reverse deps build fine with the experimental package I suggest to ask 
the release team for an exception. Else, someone has to grind through all the CVEs and check if they are applicable for 
2.3.21. I do not think any volunteer steps up for that.



More information about the Pkg-phototools-devel mailing list