[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#973748: sddm: CVE-2020-28049: local privilege escalation due to race condition in creation of the Xauthority file



Hi Norbert,

On Thu, Nov 05, 2020 at 09:15:15PM +0900, Norbert Preining wrote:
> Hi Salvatore,
> 
> On Thu, 05 Nov 2020, Salvatore Bonaccorso wrote:
> > to day, this is the debdiff I just used for the upload. tracker.d.o
> > does not show it yet because the packages are sitting in the embargoed
> > policy queue on security-master so not yet pushed out to the archive.
> 
> Ah, ok, didn't know that. Fine with me!
> 
> > No not for buster-security. But I can provide you the two commits for
> > the packaging repo if you prefer that instead of importing the dsc.
> > They are attached.
> 
> Thanks, that is great. I will trash my branch and make a new one based
> on your commit. I wait with tagging until I see the package appear.

DSA 4783-1 released.

Regards,
Salvatore


Reply to: