Queue Overview for "oldstable-proposed-updates"

List of missing builds
List of missing packages relative to security archive

Resolution Pending (14 uploads for 14 packages)

Package Version Version Problems Installability Problems Architectures Action
allow-html-temp 10.0.8-1~deb12u1 Version problems stable (10.0.7-1) Installability problems Built: source ?

Lintian issues: source

ark 4:22.12.3-1+deb12u1 Installability problems Built: amd64arm64armelarmhfi386mips64elmipselppc64els390xsource Ok

DSA: 6029

Closes: 1106104

CVEs referenced: CVE-2024-57966

bind9 1:9.18.41-1~deb12u1 Installability problems Built: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource Ok

DSA: 6033

CVEs referenced: CVE-2025-40778 CVE-2025-40780 CVE-2025-8677

Binary debdiffs: allamd64arm64armelarmhfi386mips64elmipselppc64els390x

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource

chromium 141.0.7390.122-1~deb12u1 Version problems stable (139.0.7258.154-1~deb13u1) Installability problems Built: allamd64arm64armhfi386ppc64elsource Ok

DSA: 6036

CVEs referenced: CVE-2025-12036

emacs-libvterm 0.0.2+git20230217.3e5a9b7-1+deb12u1 Installability problems Built: amd64source ?

Closes: 1115607

Binary debdiffs: amd64

intel-microcode 3.20250812.1~deb12u1 Version problems stable (3.20250512.1) Installability problems Built: amd64i386source Ok

DSA: 6030

Closes: 1110983 1112168

CVEs referenced: CVE-2025-20053 CVE-2025-20109 CVE-2025-21090 CVE-2025-22839 CVE-2025-22840 CVE-2025-22889 CVE-2025-24305 CVE-2025-26403 CVE-2025-32086

Lintian issues: amd64i386source

libssh 0.10.6-0+deb12u2 Installability problems Built: source ?

Closes: 1108407

CVEs referenced: CVE-2025-4877 CVE-2025-4878 CVE-2025-5318 CVE-2025-5351 CVE-2025-5372 CVE-2025-5449 CVE-2025-5987

Lintian issues: source

openjdk-17 17.0.17+10-1~deb12u1 Installability problems Built: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource Ok

DSA: 6038

Binary debdiffs: amd64arm64ppc64el

python-internetarchive 3.3.0-2~deb12u1 Installability problems Built: allsource Ok

DSA: 6035

Closes: 1114635

CVEs referenced: CVE-2025-58438

Lintian issues: source

request-tracker4 4.4.6+dfsg-1.1+deb12u3 Installability problems Built: allsource Ok

DSA: 6032

CVEs referenced: CVE-2025-61873

Lintian issues: allsource

request-tracker5 5.0.3+dfsg-3~deb12u4 Installability problems Built: allsource Ok

DSA: 6031

CVEs referenced: CVE-2025-61873

Lintian issues: allsource

ruby-sinatra 3.0.5-3+deb12u1 Installability problems Built: source ?

Closes: 1118290

CVEs referenced: CVE-2025-61921

thunderbird 1:140.4.0esr-1~deb12u1 Version problems stable (1:128.14.0esr-1~deb13u1) Installability problems Built: allamd64arm64i386ppc64elsource Missing: mips64els390x ?

DSA: 6040

Binary debdiffs: allamd64arm64i386ppc64el

Lintian issues: amd64arm64i386ppc64elsource

tryton-sao 6.0.28+ds1-2+deb12u1 Installability problems Built: allsource Ok

DSA: 6034

Pending Processing (0 uploads for 0 packages)

Processed (56 uploads for 46 packages)

Package Version Version Problems Installability Problems Action
bash 5.2.15-2+b10 Installability problems ACCEPTED

Reason: rebuild with updated glibc

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

busybox 1.35.0-4+b7 Installability problems ACCEPTED

Reason: rebuild with updated glibc

µdebs: present

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

cdebootstrap 0.7.8+b33 Installability problems ACCEPTED

Reason: rebuild with updated glibc

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

chkrootkit 0.57-2+b8 Installability problems ACCEPTED

Reason: rebuild with updated glibc

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

chromium 141.0.7390.107-1~deb12u1 Version problems stable (139.0.7258.154-1~deb13u1) Installability problems ACCEPTED

DSA: 6026

CVEs referenced: CVE-2025-11756

Lintian issues: source

chromium 141.0.7390.65-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6021

CVEs referenced: CVE-2025-11211 CVE-2025-11458 CVE-2025-11460

chromium 141.0.7390.54-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6016

CVEs referenced: CVE-2025-11205 CVE-2025-11206 CVE-2025-11207 CVE-2025-11208 CVE-2025-11209 CVE-2025-11210 CVE-2025-11211 CVE-2025-11212 CVE-2025-11213 CVE-2025-11215 CVE-2025-11216 CVE-2025-11219

chromium 140.0.7339.207-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6010

CVEs referenced: CVE-2025-10890 CVE-2025-10891 CVE-2025-10892

chromium 140.0.7339.185-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6004

CVEs referenced: CVE-2025-10500 CVE-2025-10501 CVE-2025-10502 CVE-2025-10585

chromium 140.0.7339.127-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5996

CVEs referenced: CVE-2025-10200 CVE-2025-10201

chromium 140.0.7339.80-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5993

CVEs referenced: CVE-2025-9864 CVE-2025-9865 CVE-2025-9866 CVE-2025-9867

Binary debdiffs: all

cjson 1.7.15-1+deb12u4 Installability problems ACCEPTED

DSA: 6001

Closes: 1114757

CVEs referenced: CVE-2025-57052

Lintian issues: mips64elmipselsource

cups 2.4.2-3+deb12u9 Installability problems ACCEPTED

DSA: 5998

CVEs referenced: CVE-2025-58060 CVE-2025-58364

Lintian issues: amd64arm64armelarmhfi386mips64elmipselppc64els390xsource

dar 2.7.8-2+b7 Installability problems ACCEPTED

Reason: rebuild with updated glibc

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

distro-info-data 0.58+deb12u6 Installability problems REJECTED

Reason: bookworm eol date revision; as discussed

firefox-esr 140.4.0esr-1~deb12u1 Version problems stable (128.14.0esr-1~deb13u1) Installability problems ACCEPTED

Missing builds: mips64el

DSA: 6025

CVEs referenced: CVE-2025-11708 CVE-2025-11709 CVE-2025-11710 CVE-2025-11711 CVE-2025-11712 CVE-2025-11714 CVE-2025-11715

Binary debdiffs: amd64arm64armhfi386ppc64els390x

Lintian issues: amd64arm64armhfi386ppc64els390xsource

firefox-esr 140.3.1esr-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6003

Closes: 1115490

Binary debdiffs: amd64arm64armhfi386ppc64els390x

Lintian issues: amd64arm64armhfi386ppc64els390x

firefox-esr 140.3.0esr-1~deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6003

CVEs referenced: CVE-2025-10527 CVE-2025-10528 CVE-2025-10529 CVE-2025-10532 CVE-2025-10533 CVE-2025-10536 CVE-2025-10537

Binary debdiffs: amd64armhfi386

Lintian issues: amd64armhfi386

freerdp2 2.11.7+dfsg1-6~deb12u1 Installability problems ACCEPTED

Reason: new upstream release; fix multiple memory-safety vulnerabilities: integer overflow/underflow and out-of-bounds write in NSC, Clear, and GDI bitmap codecs [CVE-2024-22211 CVE-2024-32037 CVE-2024-32038 CVE-2024-32039 CVE-2024-32040]; out-of-bounds reads in ZGFX, Planar, NCRUSH, Interleaved, and RFX codecs [CVE-2024-32041 CVE-2024-32457 CVE-2024-32458 CVE-2024-32459 CVE-2024-32460]; invalid memory access in freerdp_peer_get_logon_info [CVE-2024-32661]; bounds-check and overflow fixes; update for GCC 14 / FFmpeg 7 build compatibility

Request: 1054915

Closes: 1036095 1041377 1051638 1053317 1061173 1061952 1069728 1072112 1072413 1073156 1074969 1079025

CVEs referenced: CVE-2023-39350 CVE-2023-39351 CVE-2023-39352 CVE-2023-39353 CVE-2023-39354 CVE-2023-39355 CVE-2023-39356 CVE-2023-40181 CVE-2023-40186 CVE-2023-40188 CVE-2023-40567 CVE-2023-40589 CVE-2024-22211 CVE-2024-32037 CVE-2024-32038 CVE-2024-32039 CVE-2024-32040 CVE-2024-32041 CVE-2024-32457 CVE-2024-32458 CVE-2024-32459 CVE-2024-32460 CVE-2024-32661

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

Lintian issues: amd64arm64armelarmhfi386mips64elmipselppc64els390xsource

gegl 1:0.4.42-2+deb12u1 Installability problems ACCEPTED

DSA: 6018

Closes: 1116470

CVEs referenced: CVE-2025-10921

ghostscript 10.0.0~dfsg-11+deb12u8 Installability problems ACCEPTED

DSA: 6024

Closes: 1109270 1116443 1116444

CVEs referenced: CVE-2025-59798 CVE-2025-59799 CVE-2025-7462

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource

git 1:2.39.5-0+deb12u3 Installability problems install upgrade ACCEPTED

Reason: fix arbitrary file creation/truncation in gitk [CVE-2025-27613]; prevent arbitrary file overwrite in git-gui with crafted directory names [CVE-2025-46835]; correct submodule path parsing with trailing CR [CVE-2025-48384]; validate bundle-uri to prevent protocol injection during clone [CVE-2025-48385]

CVEs referenced: CVE-2025-27613 CVE-2025-46835 CVE-2025-48384 CVE-2025-48385

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource

gss 1.0.4-1+deb12u1 Installability problems ACCEPTED

Reason: fix FTBFS caused by an expired Kerberos ticket

Missing builds: armel armhf i386 mipsel

Request: 1091842

Closes: 1076885

Binary debdiffs: allamd64arm64mips64elppc64els390x

haproxy 2.6.12-1+deb12u3 Installability problems ACCEPTED

DSA: 6017

CVEs referenced: CVE-2025-11230

Lintian issues: amd64arm64armelarmhfi386mips64elmipselppc64els390xsource

imagemagick 8:6.9.11.60+dfsg-1.6+deb12u4 Installability problems ACCEPTED

DSA: 5997

Closes: 1109339 1111103 1111586 1111587 1112469 1114520

CVEs referenced: CVE-2025-53014 CVE-2025-53019 CVE-2025-53101 CVE-2025-55154 CVE-2025-55212 CVE-2025-55298 CVE-2025-57803 CVE-2025-57807

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource

jetty9 9.4.57-1.1~deb12u1 Version problems stable (9.4.57-1) Installability problems ACCEPTED

DSA: 6005

Closes: 1111766

CVEs referenced: CVE-2025-5115

Lintian issues: allsource

libcap2 2.66-4+deb12u2+b2 Installability problems ACCEPTED

Reason: rebuild with updated glibc

µdebs: present

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

libcpanel-json-xs-perl 4.35-1+deb12u1 Installability problems ACCEPTED

DSA: 6000

CVEs referenced: CVE-2025-40929

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

libhtp 1:0.5.42-1+deb12u1 Installability problems ACCEPTED

Reason: prevent denial of service via unbounded HTTP header processing [CVE-2024-23837 CVE-2024-45797]

Request: 1114685

CVEs referenced: CVE-2024-23837 CVE-2024-45797

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

libjson-xs-perl 4.040-1~deb12u1 Version problems stable (4.030-2) libjson-xs-perl/stable [amd64] (4.030-2+b5) libjson-xs-perl/stable [arm64] (4.030-2+b5) libjson-xs-perl/stable [armel] (4.030-2+b4) libjson-xs-perl/stable [armhf] (4.030-2+b4) libjson-xs-perl/stable [i386] (4.030-2+b4) libjson-xs-perl/stable [ppc64el] (4.030-2+b4) libjson-xs-perl/stable [s390x] (4.030-2+b4) Installability problems ACCEPTED

DSA: 5999

CVEs referenced: CVE-2025-40928

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

libxslt 1.1.35-1+deb12u3 Installability problems ACCEPTED

DSA: 5979

libyaml-syck-perl 1.34-2+deb12u1 Version problems stable (1.34-2) libyaml-syck-perl/stable [amd64] (1.34-2+b4) libyaml-syck-perl/stable [arm64] (1.34-2+b4) libyaml-syck-perl/stable [armel] (1.34-2+b4) libyaml-syck-perl/stable [armhf] (1.34-2+b4) libyaml-syck-perl/stable [i386] (1.34-2+b4) libyaml-syck-perl/stable [ppc64el] (1.34-2+b4) libyaml-syck-perl/stable [s390x] (1.34-2+b4) Installability problems ACCEPTED

Reason: fix memory corruption leading to 'str' value being set on empty keys

Request: 1118230

CVEs referenced: CVE-2025-11683

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

linux 6.1.153-1 Installability problems ACCEPTED

DSA: 6009

µdebs: present

Closes: 1114773

CVEs referenced: CVE-2024-47704 CVE-2024-57924 CVE-2024-58240 CVE-2025-23143 CVE-2025-23160 CVE-2025-37931 CVE-2025-37968 CVE-2025-38322 CVE-2025-38347 CVE-2025-38491 CVE-2025-38502 CVE-2025-38552 CVE-2025-38614 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

Binary debdiffs: allamd64arm64armelarmhfi386mips64elmipselppc64els390x

Lintian issues: allmipsel

linux-signed-amd64 6.1.153+1 Installability problems amd64 ACCEPTED

DSA: 6009

µdebs: present

Closes: 1114773

CVEs referenced: CVE-2024-47704 CVE-2024-57924 CVE-2024-58240 CVE-2025-23143 CVE-2025-23160 CVE-2025-37931 CVE-2025-37968 CVE-2025-38322 CVE-2025-38347 CVE-2025-38491 CVE-2025-38502 CVE-2025-38552 CVE-2025-38614 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

Binary debdiffs: amd64

Lintian issues: amd64source

linux-signed-arm64 6.1.153+1 Installability problems arm64 ACCEPTED

DSA: 6009

µdebs: present

Closes: 1114773

CVEs referenced: CVE-2024-47704 CVE-2024-57924 CVE-2024-58240 CVE-2025-23143 CVE-2025-23160 CVE-2025-37931 CVE-2025-37968 CVE-2025-38322 CVE-2025-38347 CVE-2025-38491 CVE-2025-38502 CVE-2025-38552 CVE-2025-38614 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

Binary debdiffs: arm64

Lintian issues: arm64source

linux-signed-i386 6.1.153+1 Installability problems i386 ACCEPTED

DSA: 6009

µdebs: present

Closes: 1114773

CVEs referenced: CVE-2024-47704 CVE-2024-57924 CVE-2024-58240 CVE-2025-23143 CVE-2025-23160 CVE-2025-37931 CVE-2025-37968 CVE-2025-38322 CVE-2025-38347 CVE-2025-38491 CVE-2025-38502 CVE-2025-38552 CVE-2025-38614 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

Binary debdiffs: i386

Lintian issues: i386source

lxd 5.0.2-5+deb12u1 Installability problems ACCEPTED

DSA: 6028

Closes: 1114940

CVEs referenced: CVE-2025-54286 CVE-2025-54287 CVE-2025-54288 CVE-2025-54293

mydumper 0.10.1-1+deb12u2 Installability problems ACCEPTED

Reason: fix arbitrary file read issue [CVE-2025-30224]

Request: 1106790

CVEs referenced: CVE-2025-30224

Binary debdiffs: allamd64arm64armelarmhfi386mips64elmipselppc64els390x

mydumper 0.10.1-1+deb12u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: fix arbitrary file read issue [CVE-2025-30224]

Request: 1106790

CVEs referenced: CVE-2025-30224

nncp 8.8.2-3+deb12u1 Installability problems ACCEPTED

DSA: 6012

Closes: 1115848

CVEs referenced: CVE-2025-60020

node-sha.js 2.4.11+~2.4.0-2+deb12u1 Version problems stable (2.4.11+~2.4.0-2) Installability problems ACCEPTED

DSA: 6002

Closes: 1111769

CVEs referenced: CVE-2025-9288

Binary debdiffs: all

Lintian issues: all

node-tar-fs 2.1.3-0+deb12u2 Installability problems ACCEPTED

DSA: 6013

Closes: 1116338

CVEs referenced: CVE-2025-59343

Lintian issues: source

onetbb 2021.8.0-2+deb12u1 Installability problems ACCEPTED

Reason: fix FTBFS on single-CPU and CI environments by skipping problematic tests

Request: 1116578

Closes: 1094260 1108053

open-vm-tools 2:12.2.0-1+deb12u4 Installability problems ACCEPTED

Reason: disable SDMP service version collection by default to mitigate local privilege escalation [CVE-2025-41244]

Request: 1116946

CVEs referenced: CVE-2025-41244

Lintian issues: amd64arm64i386source

openrefine 3.6.2-2+deb12u3 Installability problems ACCEPTED

Reason: fix MySQL host parameter injection in JDBC URL parsing [CVE-2024-23833]; fix reflected XSS in gdata OAuth callback handler [CVE-2024-47878]; fix content-type confusion XSS in ExportRows endpoint [CVE-2024-47880]; prevent remote or extension loading via SQLite connection URL [CVE-2024-47881]; escape HTML in error stack traces [CVE-2024-47882]; prevent path traversal in language file loading [CVE-2024-49760]

Request: 1116986

CVEs referenced: CVE-2024-23833 CVE-2024-47878 CVE-2024-47880 CVE-2024-47881 CVE-2024-47882 CVE-2024-49760

Binary debdiffs: all

Lintian issues: allsource

openssl 3.0.17-1~deb12u3 Installability problems ACCEPTED

DSA: 6015

µdebs: present

CVEs referenced: CVE-2025-9230 CVE-2025-9232

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390x

pam 1.5.2-6+deb12u2 Installability problems ACCEPTED

Reason: fix local privilege escalation in pam_namespace [CVE-2025-6020]

Request: 1115588

Closes: 1107919

CVEs referenced: CVE-2025-6020

Lintian issues: allamd64arm64armelarmhfi386mips64elmipselppc64els390xsource

python-django 3:3.2.19-1+deb12u2 Installability problems c-i failed: python-django-storages/1.13.2-1 [amd64] python-django-storages/1.13.2-1 [arm64] python-django-storages/1.13.2-1 [i386] python-django-storages/1.13.2-1 [ppc64el] python-django-storages/1.13.2-1 [s390x] ACCEPTED

Reason: fix regular expression-based denial of service issue [CVE-2023-36053], denial of service issues [CVE-2024-38875 CVE-2024-39614 CVE-2024-41990 CVE-2024-41991], user enumeration issue [CVE-2024-39329], directory traversal issue [CVE-2024-39330], excessive memory consumption issue [CVE-2024-41989], SQL injection issue [CVE-2024-42005]

Request: 1079454

Closes: 1076069 1078074

CVEs referenced: CVE-2023-36053 CVE-2024-38875 CVE-2024-39329 CVE-2024-39330 CVE-2024-39614 CVE-2024-41989 CVE-2024-41990 CVE-2024-41991 CVE-2024-42005

Binary debdiffs: all

Lintian issues: all

autopkgtest failure in python-django-storages considered blocking for now (elbrus 2025-05-11, see the bug report)
         
qemu 7.2+dfsg-7+deb12u16+b2 Installability problems ACCEPTED

Reason: rebuild with updated glibc and glib2.0

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

redis 5:7.0.15-1~deb12u6 Installability problems ACCEPTED

DSA: 6020

CVEs referenced: CVE-2025-46817 CVE-2025-46818 CVE-2025-46819 CVE-2025-49844

rust-cbindgen-web 0.27.0-1~deb12u1 Installability problems ACCEPTED

Reason: new upstream release, to support building newer Mozilla software versions

Missing builds: mips64el

Request: 1114821

rust-cbindgen-web 0.26.0-3~deb12u1+b1 Installability problems REJECTED

Reason: false positive

shibboleth-sp 3.4.1+dfsg-2+deb12u1 Installability problems ACCEPTED

DSA: 5994

Closes: 1114506

Binary debdiffs: amd64arm64armelarmhfi386mips64elmipselppc64els390x

tiff 4.5.0-6+deb12u3 Installability problems ACCEPTED

DSA: 6023

CVEs referenced: CVE-2025-9900

Lintian issues: mips64elmipselsource

user-mode-linux 6.1um4+b6 Installability problems ACCEPTED

Reason: rebuild with updated linux

Binary debdiffs: amd64i386

vtk9 9.1.0+really9.1.0+dfsg2-5+deb12u1 Installability problems ACCEPTED

Reason: fix inability to read VTK XML files with appended data on newer expat

Request: 1115471

Closes: 1114938

Binary debdiffs: all

Lintian issues: all