On Mon, Apr 28, 2025 at 08:35:58PM +0200, Rene Engelhard wrote:
> [ CCing the inkscape maintainer, too ]
> 
> 
> Hi,

Hi Rene,

> Am 28.04.25 um 20:25 schrieb Adrian Bunk:
> > you missed the last line I've added there earlier today:
> >    Might cause regression: 
> > https://bugzilla.suse.com/show_bug.cgi?id=1241620#c3
> 
> Indeed I missed it. (Actually didn't look at the contents when I wrote the 
> mail, just looked up the URL) [1]
> 
> 
> Unfortunately the links there don't work, but "version update" makes me wary, 
> as applying a security patch is not really a "version update". Or it's just 
> badly formulated.

I know as much as you know about that entry.

> TTBOMK inkscape didn't regress with 
> https://tracker.debian.org/ews/1640383/accepted-poppler-25030-4-source-into-unstable/
>  (did it? at least no inkscape update since then)...
> 
> Poppler version updates break all the time, indeed.
> 
> 
> But maybe the inkscape/poppler combo in bookworm breaks, didn't try... Maybe 
> the inkscape maintainer can help here.

And who knows how likely "Not sure there is any other problem" is.

I will not try to fix this CVE at this point in time, but this does not 
prevent other people from working on it if anyone disagrees.

> Regards,
> 
> 
> Rene

cu
Adrian

Reply via email to