Re: CVE-2021-4034 in testing seems to be fixed but showed as vulnerable
Hi!
On Thu, Jan 27, 2022 at 08:34:32PM +0900, Hideki Yamane wrote:
> Hi,
>
> policykit-1 in testing is noted as vulnerable but its version
> 0.105-31.1~deb12u1 fixed CVE-2021-4034.
>
> Will the data in security-tracker be updated automatically?
I'm aware of that, but I have not added a fixed version explicitly for
testing, as this was not meant to be done this way. 0.105-31.1~deb12u1
was only uploaded to bookworm directly as the unstable->testing
migration had to be stopped due to #1004272 due to the urgency of
CVE-2021-4034.
Regards,
Salvatore
Reply to: