- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Thorsten Alteholz
- Date:
- 2022-07-09 10:51:50 UTC
- Severity:
- normal
- Tags:
The attached debdiff for golang-github-russellhaering-goxmldsig fixes CVE-2020-7711 in Bullseye. This CVE has been marked as no-dsa by the security team. Thorsten
Control: tags -1 + confirmed Please go ahead. Regards, Adam
Great, thanks ... and uploaded. Thorsten
package release.debian.org tags 1008577 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details ============== Package: golang-github-russellhaering-goxmldsig Version: 1.1.0-1+deb11u1 Explanation: fix null pointer dereference caused by crafted XML signatures [CVE-2020-7711]
package release.debian.org tags 1008577 = bullseye pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian bullseye. Thanks for your contribution! Upload details ============== Package: golang-github-russellhaering-goxmldsig Version: 1.1.0-1+deb11u1 Explanation: fix null pointer dereference caused by crafted XML signatures [CVE-2020-7711]
(re-sending with fixed bug numbers) Hi, The updates discussed in these bugs were included in today's bullseye point release. Regards, Adam