Control: tag -1 confirmed On Mon, Apr 17, 2023 at 03:12:37PM +0200, Helmut Grohne wrote: > This update aims to fix three vulnerabilities in the protobuf package: > > * Fix CVE-2021-22569 (DoS in Java) > * Fix CVE-2021-22570 (NULL pointer dereference) > * Fix CVE-2022-1941 (memory DoS)
Please go ahead. Thanks, -- Jonathan Wiltshire j...@debian.org Debian Developer http://people.debian.org/~jmw 4096R: 0xD3524C51 / 0A55 B7C5 1223 3942 86EC 74C3 5394 479D D352 4C51 ed25519/0x196418AAEB74C8A1: CA619D65A72A7BADFC96D280196418AAEB74C8A1