Re: [CVE-2024-24820] Package: icingaweb2-module-director
Hi Fabian,
On Wed, Nov 13, 2024 at 11:10:49PM +0100, taunton@uber.space wrote:
> Hey folks,
>
> I found some discrepancy which I can't explain myself. In
> https://security-tracker.debian.org/tracker/CVE-2024-24820 there is a notice
> "NOT-FOR-US: Icinga Director" but from my understanding the package is in
> debian >=11 (https://packages.debian.org/sid/icingaweb2-module-director) and
> possibly vulnerable(11,12).
>
> Thanks in advance and kind regards!
Thanks for reporting this. I have updated the tracker metadata but
keeping a todo item for re-triaging the details of the CVE.
Regards,
Salvatore
Reply to: