There are 2 open security issues in bullseye.
2 issues left for the package maintainer to handle:
- CVE-2023-2602:
(needs triaging)
A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory.
- CVE-2023-2603:
(needs triaging)
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.
You can find information about how to handle these issues in the security team's documentation.