[Pkg-privacy-maintainers] Bug#1014966: onionshare: CVE-2021-41867 CVE-2021-41868 CVE-2022-21688 CVE-2022-21689 CVE-2022-21690 CVE-2022-21691 CVE-2022-21692 CVE-2022-21693 CVE-2022-21694 CVE-2022-21695 CVE-2022-21696

Clément Hermann nodens at debian.org
Sun Nov 27 10:45:27 GMT 2022


Hi

Le 25/10/2022 à 13:53, Clément Hermann a écrit :
> Hi Moritz,
>
> Le 25/10/2022 à 11:15, Moritz Muehlenhoff a écrit :
>
>> Given that the primary use case for onionshare will be tails, my 
>> suggestion would be that CVE-2022-21689
>> and CVE-2022-21690 get backported fixes for the next Bullseye point 
>> release (which Tails will sync up
>> to). What do you think?
>
> There are some users of onionshare beside in Tails, but that sounds 
> like a viable plan.
>
FYI, backported fixes have been uploaded and should be included in next 
point release (#1023981)

Cheers,

-- 
nodens



More information about the Pkg-privacy-maintainers mailing list