Hi, On Sat, Aug 17, 2024 at 12:18:46PM +0100, John Steeves wrote: > Hello, > I noticed that Ubuntu recently updated their supported versions of > gnome-shell to patch this vulnerability. However, it hasn't been patched in > the gnome-shell packages in the Debain repos as of yet. > > Is there a roadmap for when gnome-shell 43.9 will be patched for Debian > stable (bookworm)?
https://www.debian.org/security/faq#cve-severity-assessment should almost answer your question. That said, as mentioned in the notes of the CVE, no DSA is planned but a fix could be done via an upcoming point release. Regards, Salvatore