• Bug#1108981: Fixing two Redis updates in bullseye (CVE-2025-32023 & CVE

    From Salvatore Bonaccorso@21:1/5 to Chris Lamb on Sun Jul 20 08:20:01 2025
    Hi Chris,

    On Thu, Jul 10, 2025 at 11:59:31AM -0700, Chris Lamb wrote:
    Hello Security Team,

    Would you be interested in a bullseye update for redis in order to
    address the two latest CVEs?

    That would be:

    * CVE-2025-32023 (#1108975)
    * CVE-2025-48367 (#1108981)

    I'm preparing parallel updates for buster, stretch and buster, as well
    as an update for unstable (#1108985)

    I guess you mean bookworm here ;-).

    Can you please preapre debdiff and send them for review to the
    security-team alias. Can you as well include fixes for the no-dsa
    taggend CVEs which have upstream fixes already?

    Regards,
    Salvatore

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)