[Bug 2062406] Re: CVE-2024-32462: Sandbox escape via RequestBackground portal and CWE-88

2024-04-24 Thread Jia Tan
The Ubuntu packages turned out to be safe, but administrators of high security environments should still reach out privately for an assessment done by adding a test repository. Please make this issue private, it's confusing for users, making my work harder. -- You received this bug notification b

[Bug 2059417] Re: Sync xz-utils 5.6.1-1 (main) from Debian unstable (main)

2024-03-28 Thread Jia Tan
** Description changed: Please sync xz-utils 5.6.1-1 (main) from Debian unstable (main) Hello! I am one of the upstream maintainers for XZ Utils. Version 5.6.1 was recently released and uploaded to Debian as a bugfix only release. Notably, this fixes a bug that causes Valgrind to issue

[Bug 2059417] [NEW] Sync xz-utils 5.6.1-1 (main) from Debian unstable (main)

2024-03-28 Thread Jia Tan
Public bug reported: Please sync xz-utils 5.6.1-1 (main) from Debian unstable (main) Hello! I am one of the upstream maintainers for XZ Utils. Version 5.6.1 was recently released and uploaded to Debian as a bugfix only release. Notably, this fixes a bug that causes Valgrind to issue a warning on