Comment 12 for bug 1973033

Revision history for this message
Sebastien Bacher (seb128) wrote :

> #2 please SRU the two fixes/commits included in 1.14.0 back into Jammy (fixing a double-free and a SIGSEV), as those could have security implications.

SRU bug #2015543 uploaded now, which is an update to 1.12.1 which basically includes exactly those changes

> #3 please provide links to the higher-level component test, covering wpebackend-fdo or provide some autopkgtests or manual testing story (see #4)

We don't have something better to provide atm than the webkitgtk autopkgtests once it will be built using wpe. I think we are blocked at this point since we don't have the resources to provide improvements in the near future.

The security team wants to roll out updates to a NEWer series to address some security vulnerability though. I will let them and you decide whether a weaker-than-wanted testing story is a strong enough reason to hold on CVE fixes for Ubuntu.