Source: libjgroups-java Version: 2.12.2.Final-5 Severity: normal X-Debbugs-Cc: 867...@bugs.debian.org, debian-j...@lists.debian.org
Hi, when fixing Vcs fields in libjgroups-java I realised that the Debian packaged version is lagging behind several major upstream versions. It has an open CVE-2016-2141 and the according bug is unanswered by the maintainers of the package. The issue is fixed in upstream version 4.0 while the latest version at the time of reporting this bug is 5.0.0. Kind regards Andreas. -- System Information: Debian Release: trixie/sid APT prefers unstable APT policy: (500, 'unstable'), (500, 'testing'), (50, 'buildd-unstable'), (1, 'experimental') Architecture: amd64 (x86_64) Kernel: Linux 6.3.0-2-amd64 (SMP w/8 CPU threads; PREEMPT) Kernel taint flags: TAINT_WARN Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8), LANGUAGE not set Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled