Hi Milan, On Thu, May 02, 2024 at 12:54:10PM -0400, Milan Kupcevic wrote: > Hi Salvatore, > > On 5/2/24 10:45, Salvatore Bonaccorso wrote: > [...] > > > > I did ponder about it and trying to add this fix as well for the > > upcoming less DSA, but it won't go apply for the older releases and > > the issue is compared minor enough. > > > > I think I will go ahead with the two CVE fixes only. > > > Take a look at the attached patch. It applies and fixes the bookworm and > bullseye versions. It seems the buster version is not vulnerable to this > particular issue.
Ah right that's the same you applied in unstable AFAICS and backported. I will have a look, so that could make it as well into the DSA released version. Thanks a lot! Regards, Salvatore