Bug#1006293: bullseye-pu: package plasma-desktop/4:5.20.5-4
Control: tag -1 moreinfo
On Tue, Feb 22, 2022 at 10:45:21PM +0100, Patrick Franz wrote:
> A bug in plasma-discover causes a Denial of Service attack
> against the KDE servers. 3 packages needs to be patch to
> mitigate the attack: knewstuff, plasma-desktop and
> plasma-discover.
> This update fixes bug #1006125 for bullseye and has been
> fixed in unstable.
>
Can you clarify the issue and how the 3 affected packages interact? The
mailing list links seem to talk about plasma-discover's KNS backend so I guess
I understand that part, how are plasma-desktop and knewstuff involved?
Reply to: