privoxy stretch package 3.0.26-3+deb9u3 prepared

2021-12-10 Thread Roland Rosenfeld
Hi! (please Cc: me in reply, since I'm not subscribed to debian-lts) Privoxy upstream just released version 3.0.33, which fixes four new CVEs, which are also reported at security-tracker. I prepared a package that fixes CVE-2021-44540 and CVE-2021-44543. CVE-2021-44541 and CVE-2021-44542 are mi

Re: privoxy stretch package 3.0.26-3+deb9u3 prepared

2021-12-10 Thread Utkarsh Gupta
Hi Roland, On Fri, 10 Dec, 2021, 5:50 pm Roland Rosenfeld, wrote: > Privoxy upstream just released version 3.0.33, which fixes four new > CVEs, which are also reported at security-tracker. > > I prepared a package that fixes CVE-2021-44540 and CVE-2021-44543. > > CVE-2021-44541 and CVE-2021-4454

Re: privoxy stretch package 3.0.26-3+deb9u3 prepared

2021-12-10 Thread Chris Lamb
Hi all, >> Since the two CVEs are tagged "minor issue" on security-tracker, I'm >> not sure whether it's worth doing a LTS upload for this. > > Thank you for getting in touch. I'll defer the decision to roll out the > DLA to Chris, who's at front desk. If he thinks it worth doing an > upload, I'

Re: privoxy stretch package 3.0.26-3+deb9u3 prepared

2021-12-10 Thread Roland Rosenfeld
Hi all, On Fr, 10 Dez 2021, Chris Lamb wrote: > >> Since the two CVEs are tagged "minor issue" on security-tracker, I'm > >> not sure whether it's worth doing a LTS upload for this. > > > > Thank you for getting in touch. I'll defer the decision to roll out the > > DLA to Chris, who's at front d