[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1060767: bookworm-pu: package proftpd-mod-proxy/0.9.2-1+deb12u1



Package: release.debian.org
Severity: normal
Tags: bookworm
User: release.debian.org@packages.debian.org
Usertags: pu
X-Debbugs-Cc: proftpd-mod-proxy@packages.debian.org
Control: affects -1 + src:proftpd-mod-proxy

[ Reason ]
The version currently in Debian stable suffers from the CVE-2023-48795
(Terrapin attack) security issue.

[ Impact ]
Proftp further suffers from the described security issues.

[ Tests ]
The current change is directly copied from the upstream git repo. They have a
test suite for that package, it is not yet activated in Debian.

[ Checklist ]
  [X] *all* changes are documented in the d/changelog
  [X] I reviewed all changes and I approve them
  [X] attach debdiff against the package in (old)stable
  [X] the issue is verified as fixed in unstable

[ Changes ]
Patch for CVE-2023-48795 (copied from upstream's repo)

[ Other info ]
The debdiff is available here:
https://release.debian.org/proposed-updates/bookworm_diffs/proftpd-mod-proxy_0.9.2-1+deb12u1.debdiff

Attachment: signature.asc
Description: PGP signature


Reply to: