[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: CVE-2021-4034 in testing seems to be fixed but showed as vulnerable



Hi!

On Thu, Jan 27, 2022 at 08:34:32PM +0900, Hideki Yamane wrote:
> Hi,
> 
>  policykit-1 in testing is noted as vulnerable but its version
>  0.105-31.1~deb12u1 fixed CVE-2021-4034.
> 
>  Will the data in security-tracker be updated automatically?

I'm aware of that, but I have not added a fixed version explicitly for
testing, as this was not meant to be done this way. 0.105-31.1~deb12u1
was only uploaded to bookworm directly as the unstable->testing
migration had to be stopped due to #1004272 due to the urgency of
CVE-2021-4034.

Regards,
Salvatore


Reply to: