Hi Salvatore-- On Fri 2023-06-02 21:20:50 +0200, Salvatore Bonaccorso wrote: > Thanks for having a closer look and for your assessment. Then I > believe we can have a fix scheduled via respective point releases, I > do not see an urgency for it requiring a DSA. Initially I was not > completely sure about it.
i'm fine with a fix in the point release approach. I've gone ahead and uploaded 4.11-1 to unstable, and 4.3-1+deb11u4 to bullseye for proposed-updates (#1037054). And I've uploaded 4.10-1+deb12u1 to bookworm's proposed-updates too (#1037056). I recognize that i missed the window for bookworm, and i'm bummed about that, but i think this approach should reach users with reasonable speed (and most users shouldn't have IKEv1 enabled at all on bookworm anyway). Please don't hesitate to nudge here if there's more that needs doing. --dkg
signature.asc
Description: PGP signature