Bug#983610: zint: CVE-2021-27799

2021-03-11 Thread Gunnar Wolf
tags -1 + patch,pending user debian-rele...@lists.debian.org usertags -1 + bsp-2021-03-latinoamerica thank you Hi, I have prepared this patch and will be performing an upload targetted at delayed/7-day. Dmitry, please do take a look at my proposed patch. I backported the commit I'm quoting in

Bug#983610: zint: CVE-2021-27799

2021-02-27 Thread Salvatore Bonaccorso
Hey Dmitry, Thanks for the reply! On Sun, Feb 28, 2021 at 04:29:24PM +1100, Dmitry Smirnov wrote: > > Reasoning for making it RC: it is in the library part > > Even though nothing depends on the library yet?? But you have cutted away the second part of the sentence :). Usually I do not put

Bug#983610: zint: CVE-2021-27799

2021-02-27 Thread Dmitry Smirnov
> Reasoning for making it RC: it is in the library part Even though nothing depends on the library yet?? -- Regards, Dmitry Smirnov GPG key : 4096R/52B6BBD953968D1B --- As of 19 March 2020, COVID-19 is no longer considered to be a high consequence infectious disease (HCID) in the UK. --

Bug#983610: zint: CVE-2021-27799

2021-02-27 Thread Salvatore Bonaccorso
Source: zint Version: 2.9.1-1 Severity: serious Tags: security upstream Forwarded: https://sourceforge.net/p/zint/tickets/218/ X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for zint. CVE-2021-27799[0]: | ean_leading_zeroes in