-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-4974-1                   security@debian.org
https://www.debian.org/security/                       Moritz Muehlenhoff
September 19, 2021                    https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : nextcloud-desktop
CVE ID         : CVE-2021-22895 CVE-2021-32728
Debian Bug     : 989846

Two vulnerabilities were discovered in the Nextcloud desktop client,
which could result in information disclosure.

For the oldstable distribution (buster), these problems have been fixed
in version 2.5.1-3+deb10u2.

For the stable distribution (bullseye), these problems have been fixed in
version 3.1.1-2+deb11u1.

We recommend that you upgrade your nextcloud-desktop packages.

For the detailed security status of nextcloud-desktop please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/nextcloud-desktop

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Debian: DSA-4974-1: nextcloud-desktop security update

September 19, 2021
Two vulnerabilities were discovered in the Nextcloud desktop client, which could result in information disclosure

Summary

Two vulnerabilities were discovered in the Nextcloud desktop client,
which could result in information disclosure.

For the oldstable distribution (buster), these problems have been fixed
in version 2.5.1-3+deb10u2.

For the stable distribution (bullseye), these problems have been fixed in
version 3.1.1-2+deb11u1.

We recommend that you upgrade your nextcloud-desktop packages.

For the detailed security status of nextcloud-desktop please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/nextcloud-desktop

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Severity
Package : nextcloud-desktop
CVE ID : CVE-2021-22895 CVE-2021-32728
Debian Bug : 989846

Related News