Bug#1070739: bookworm-pu: package python-glance-store/4.1.0-4
On Sat, Jun 15, 2024 at 07:29:56PM +0100, Adam D. Barratt wrote:
> Control: tags -1 -moreinfo +confirmed
>
> On Sat, 2024-06-15 at 16:21 +0100, Adam D. Barratt wrote:
> > Control: tags -1 + moreinfo
> >
> > On Wed, 2024-05-08 at 17:59 +0200, Salvatore Bonaccorso wrote:
> > > Hi,
> > >
> > > On Wed, May 08, 2024 at 09:52:01AM +0200, Thomas Goirand wrote:
> > >
> > [...]
> > > > I would like to update python-glance-store/4.1.0-4 to
> > > > python-glance-store/4.1.1-1+deb12u1 to address CVE-2024-1141
> > > > (aka: #1063795).
> > >
> > > Should that be 4.1.1-0+deb12u1 instead? (I do know that 4.1.1-1 was
> > > never in the archive ,but that makes sure it sorts before 4.1.1-1).
> >
> > Yes, indeed.
> >
> > Both the Security Tracker and BTS suggest that this issue affects
> > unstable and is not yet fixed there. What's the status?
>
> Apparently the metadata was outdated. Thanks for checking and updating
> it, Salvatore.
>
> Please go ahead, using 4.1.1-0+deb12u1 as the version number.
Thomas, did you saw this ack from Adam?
Regards,
Salvatore
Reply to: