Ticket Received - [SECURITY] [DLA 3916-1] thunderbird security update

2024-10-12 Thread helpdeskmailer
Dear Debian-lts, We would like to acknowledge that we have received your request and a ticket has been created. A support representative will be reviewing your request and will send you a personal response.(usually within 24 hours). To view the status of the ticket or add comments, please vis

CVE-2024-7531/nss for debian/bullseye LTS

2024-10-12 Thread Arturo Borrero Gonzalez
Hi there, this email is to propose we mark the nss package in debian bullseye as not affected by CVE-2024-7531 [0]. The upstream patch is clearly identified [1], but debian/bullseye [2] just doesn't contain the affected code. We did a similar thing for debian/{jessie,stretch,buster} already

Re: Question about risk of regression for git

2024-10-12 Thread Sean Whitton
Hello, On Tue 08 Oct 2024 at 05:25pm -04, Roberto C. Sánchez wrote: > On Tue, Oct 08, 2024 at 11:19:46PM +0200, Ola Lundqvist wrote: >>Hi Roberto >>Thank you. I then conclude that the status should be changed from >>"postpone" to "ignore" for both for LTS and all ELTS releases. > > Th

Re: Question about risk of regression for git

2024-10-12 Thread Ola Lundqvist
Hi Sean A gentle ping on this. Please let me know your thoughts. Cheers // Ola On Tue, 8 Oct 2024 at 23:28, Ola Lundqvist wrote: > Hi > > Sounds good. I'll wait for further input. > > // Ola > > On Tue, 8 Oct 2024 at 23:25, Roberto C. Sánchez > wrote: > >> On Tue, Oct 08, 2024 at 11:19:46PM