On Sat, May 09, 2026 at 08:41:13AM +0200, Peter Wienemann wrote:
> Package: release.debian.org
> Severity: normal
> Tags: trixie
> X-Debbugs-Cc: [email protected], [email protected]
> Control: affects -1 + src:sogo
> User: [email protected]
> Usertags: pu
> 
> [ Reason ]
> This applies a security fix introduced by upstream release
> 5.12.7 to version 5.12.1 distributed with Trixie. I am not aware of any
> CVE identifier for it. Upstream recommends to update immediately
> provided one of the following setups is used [0]:
> 
> 1. At least one user source is a PostgreSQL database.
> 
> 2. a) At least one user source is an SQL database (MariaDB or PostgreSQL)
>    b) Passwords are stored in plain text
>...

https://security-tracker.debian.org/tracker/CVE-2026-46445

cu
Adrian

Reply via email to