Univention Bugzilla – Bug 53822
grilo: Multiple issues (4.4)
Last modified: 2021-09-22 17:13:00 CEST
New Debian grilo 0.3.2-2+deb9u1 fixes: This update addresses the following issue: * missing TLS certificate verification (CVE-2021-39365)
--- mirror/ftp/4.3/unmaintained/4.3-0/source/grilo_0.3.2-2.dsc +++ apt/ucs_4.4-0-errata4.4-8/source/grilo_0.3.2-2+deb9u1.dsc @@ -1,3 +1,9 @@ +0.3.2-2+deb9u1 [Tue, 21 Sep 2021 20:03:02 +0200] Thorsten Alteholz <debian@alteholz.de>: + + * Non-maintainer upload by the LTS Team. + * CVE-2021-39365 + Fix TLS cert validation not being done for any network call. + 0.3.2-2 [Sun, 25 Sep 2016 23:20:03 +0200] Alberto Garcia <berto@igalia.com>: * autoconf-macros.patch: <http://piuparts.knut.univention.de/4.4-8/#6629916509121137874>
OK: yaml OK: announce_errata OK: patch OK: piuparts
<https://errata.software-univention.de/#/?erratum=4.4x1053>