CVE handling

Alec Leamas <[email protected]> Sat, 18 Jul 2026 13:05:06 +0200
Newsgroups gmane.linux.debian.devel.general
Message-ID <[email protected]>
Dear list,

The opencpn package has got a CVE filed against it affecting sources and all branches [1].

The CVE is moot, it is about a launcher plugin which is not packaged in Debian in any way. So the question becomes how I should deal with this so the bugs are closed.

Tried to send a message to the debian-security-tracker list, but the message doesn't even show up in the archives. Is there something else I could or should do?


--alec

[1] https://tracker.debian.org/pkg/opencpn