mark CVE-2019-7443 no-dsa in jessie
This patch removes support for passing gui variants to kauth helpers but this "feature" was not used by any part of the official KDE source code. This basically means that this patch only impacts hypothetical 3rd party helpers which we cannot test. As far as I investigated the source code, applying the kauth patch to kde4libs should not be a problem, but there are still some regression risks and given the low impact I'd rather mark it no-dsa.
Loading
Please register or sign in to comment