On Sun, Dec 15, 2024 at 03:50:27PM +0100, Salvatore Bonaccorso wrote: > Hi > > On Sun, Dec 15, 2024 at 03:25:56PM +0100, Tobias Frost wrote: > > Control: clone -1 -2 > > Control: retitle -1 zabbix: CVE-2024-36464 CVE-2024-36467 CVE-2024-36468 > > CVE-2024-42326 CVE-2024-42327 CVE-2024-42328 CVE-2024-42329 CVE-2024-42330 > > CVE-2024-42331 CVE-2024-42332 CVE-2024-42333 > > Control: retitle -2 zabbix: CVE-2024-42328 > > Control: fixed -1 1:7.0.5+dfsg-1 > > > > (Cloning bug for the remaining CVE, setting meta data for the other to > > the first upload which fixed all the vulnerabilties.) > > Thanks Tobi! > > Can you maybe reach out to upstream, keeping us in the loop, to try to > get more information on the status of CVE-2024-42328 in > https://support.zabbix.com/browse/ZBX-25624 itself? > > The upstream fix for it does not clearly associate with someting in > 7.0.4rc1 as claimed.
Ack, asked upstream for details. > Regards, > Salvatore