Status of GnuTLS vulnerabilities in PureOS

Could someone from Purism comment on the status of fixes in PureOS to the serious vulnerabilities of GnuTLS disclosed last week?

1 Like

Which CVE?

If it’s fixed in debian buster you will problably get it on PureOS.

For CVE-2020-13777 --> https://security-tracker.debian.org/tracker/CVE-2020-13777

And it’s already fixed in PureOS libgnutls30/amber-security,now 3.6.7-4+deb10u4 amd64 [installed]

1 Like