Bug#990581: nomad: CVE-2021-32575

2021-07-05 Thread Dmitry Smirnov
Dear Peter, On Tuesday, 6 July 2021 6:54:14 AM AEST Peter Pentchev wrote: > First of all, thanks for your work on nomad and Debian in general! Thank you for your kind words and for your help. > Dmitry, what do you think about my attempt to backport the upstream > patch for CVE-2021-32575 to

Bug#990581: nomad: CVE-2021-32575

2021-07-05 Thread Peter Pentchev
Hi, First of all, thanks for your work on nomad and Debian in general! Dmitry, what do you think about my attempt to backport the upstream patch for CVE-2021-32575 to the Debian package of nomad? The upstream patch is at:

Bug#990581: nomad: CVE-2021-32575

2021-07-02 Thread Moritz Mühlenhoff
Source: nomad X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for nomad. CVE-2021-32575[0]: | HashiCorp Nomad and Nomad Enterprise up to version 1.0.4 bridge | networking mode allows ARP spoofing from other bridged tasks on