Debian (E)LTS report for December 2024

2025-01-02 Thread Lee Garrett
Hi everyone, in December I manually tested CVE-2023-50387 and CVE-2023-50868 ("keytrap" and "NSEC3" security issues) in dnsmasq buster and released it. For bookworm I uploaded the package fixing those CVEs to the stable-updates queue. I was able to validate that dnsmasq stretch is also affecte

Debian (E)LTS report for December 2024

2025-01-01 Thread Guilhem Moulin
During the month of December 2024 and on behalf of Freexian, I worked on the following: php7.4, php7.3, php7.0 and php5 --- Uploaded php7.4=7.4.33-1+deb11u7 and issued DLA-3986-1. https://lists.debian.org/msgid-search/?m=z1wxnl0vw0es6...@debian.org * CVE-2024-8929: