Bug#993046: libssh: CVE-2021-3634 - bullseye update prepared

2021-08-29 Thread Moritz Muehlenhoff
Hi Martin, On Sat, Aug 28, 2021 at 01:54:50PM +0200, Martin Pitt wrote: > Hello Salvatore and Laurent, > Is that ok with you, in particular the not-quite-CVE patches? Should I upload > directly or put the dsc somewhere? Ack, that looks good. Please build with -sa (security.d.o and ftp.d.o don't

Bug#993046: libssh: CVE-2021-3634 - bullseye update prepared

2021-08-28 Thread Martin Pitt
Hello Salvatore and Laurent, Salvatore Bonaccorso [2021-08-26 22:21 +0200]: > The following vulnerability was published for libssh. > > CVE-2021-3634[0]: > | Possible heap-buffer overflow when rekeying > > If you fix the vulnerability please also make sure to include the > CVE (Common Vulnerabil