[DSA 6452-1] designate security update

Moritz Muehlenhoff <[email protected]>
Newsgroups gmane.linux.debian.user.security.announce
Message-ID <[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-6452-1                   [email protected]
https://www.debian.org/security/                       Moritz Muehlenhoff
August 19, 2026                       https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : designate
CVE ID         : CVE-2026-71193 CVE-2026-71194

Two security vulnerabilities were discovered in Designate, the OpenStack
DNS-as-a-Service component, which could result in a tenant manipulating
the zones of a different tenant, resulting in denial of service or DNS
hijacking.

For the stable distribution (trixie), these problems have been fixed in
version 1:20.0.0-2+deb13u1.

We recommend that you upgrade your designate packages.

For the detailed security status of designate please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/designate

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: [email protected]
-----BEGIN PGP SIGNATURE-----
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=fyF2
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.