[Touch-packages] [Bug 2054916] Re: CVE-2022-44640 affects the version of heimdal on ubuntu 22.04 - could it be updated?

2024-02-29 Thread Paride Legovini
** Also affects: heimdal (Ubuntu Focal) Importance: Undecided Status: New ** Also affects: heimdal (Ubuntu Jammy) Importance: Undecided Status: New ** Changed in: heimdal (Ubuntu Focal) Status: New => Fix Released ** Changed in: heimdal (Ubuntu Jammy) Status:

[Touch-packages] [Bug 2054916] Re: CVE-2022-44640 affects the version of heimdal on ubuntu 22.04 - could it be updated?

2024-02-28 Thread Dag Hovland
Unfortunately, I am completely new to ubuntu packaging. The documentation on update procedures in the post above points to https://canonical-ubuntu-packaging-guide.readthedocs- hosted.com/en/latest/ , which is under work, and seems to recommend only experienced packagers to make packages at the

[Touch-packages] [Bug 2054916]

2024-02-26 Thread Eduardo Barretto
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is

[Touch-packages] [Bug 2054916] Re: CVE-2022-44640 affects the version of heimdal on ubuntu 22.04 - could it be updated?

2024-02-26 Thread Athos Ribeiro
In Debian, this was fixed in 7.7.0+dfsg-2+deb11u1 in bullseye(-security) - i.e., 7.7.0+dfsg-2 was still affeected. 7.7.0+dfsg-3 includes a fix for a different CVE: heimdal (7.7.0+dfsg-3) unstable; urgency=high * Fix CVE-2021-3671: A null pointer de-reference was found in the way samba

[Touch-packages] [Bug 2054916] Re: CVE-2022-44640 affects the version of heimdal on ubuntu 22.04 - could it be updated?

2024-02-25 Thread Hans Joachim Desserud
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-44640 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to heimdal in Ubuntu. https://bugs.launchpad.net/bugs/2054916 Title: CVE-2022-44640 affects the version

[Touch-packages] [Bug 2054916] [NEW] CVE-2022-44640 affects the version of heimdal on ubuntu 22.04 - could it be updated?

2024-02-25 Thread Dag Hovland
Public bug reported: I am running ubuntu 22.04. The version of heimdal installed (7.7.0) is vunerable to CVE-2022-44640, which is categorised as critical by some (crowdstrike falcon at least). Is is possible to upgrade it to some non- vulnerable version? ** Affects: heimdal (Ubuntu)