Queue Overview for "proposed-updates"

TODO items

Removals

List of missing builds
List of missing packages relative to security archive

Resolution Pending (2 uploads for 2 packages)

Package Version Version Problems Installability Problems Architectures Action
base-files 13.8+deb13u2 Installability problems Built: source ?
openconnect 9.12-3+deb13u1 Installability problems Built: source More info needed

Reason: query on appropriateness

Closes: 1119239

Pending Processing (0 uploads for 0 packages)

Processed (185 uploads for 154 packages)

Package Version Version Problems Installability Problems Action
7zip 25.01+dfsg-1~deb13u1 Installability problems ACCEPTED

Reason: new upstream release; security fixes [CVE-2025-55188 CVE-2025-11002 CVE-2025-11001]

Request: 1118008

CVEs referenced: CVE-2025-11001 CVE-2025-11002 CVE-2025-55188

7zip-rar 25.00+ds-1+deb13u1 Installability problems ACCEPTED

Reason: add missing CRC table constructor

Request: 1120145

Closes: 1118733

aide 0.19.1-2+deb13u2 Installability problems ACCEPTED

Reason: fix bin/buildcache use by running it from a root timer; various updates and fixes to included rules

Request: 1118037

Binary debdiffs: all

Lintian issues: source

allow-html-temp 10.0.8-1~deb13u1 Installability problems all ACCEPTED

Reason: ensure compatibility with Thunderbird >=140.1

Request: 1116020

Binary debdiffs: all

alsa-ucm-conf-asahi 8-2+deb13u1 Installability problems ACCEPTED

Reason: install missing aop_audio UCM configs

Request: 1112557

Closes: 1112531

Binary debdiffs: all

ansible 12.0.0~b5+dfsg-0+deb13u1 Installability problems ACCEPTED

Reason: update collections to maintain compatibility with ansible-core 2.19

Request: 1112261

Binary debdiffs: all

ansible-core 2.19.4-0+deb13u1 Version problems testing (2.19.3-2) Installability problems ACCEPTED

Reason: new upstream stable release; fix regression from 2.18 regarding handlers and play tags

Request: 1120358

Closes: 1114932

Binary debdiffs: all

ansible-core 2.19.1-0+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: update to latest upstream bugfix-only release

Request: 1112256

Binary debdiffs: all

asahi-scripts 20250130-3+deb13u1 Installability problems ACCEPTED

Reason: fix the macaudio default profile check; add the apple_nvmem_spmi module to the initramfs explicitly; make update-m1n1 idempotent

Request: 1118663

Closes: 1112262 1112264 1112265

bind9 1:9.20.15-1~deb13u1 Installability problems ACCEPTED

DSA: 6033

CVEs referenced: CVE-2025-40778 CVE-2025-40780 CVE-2025-8677

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: amd64arm64armelarmhfi386ppc64elriscv64s390x

brltty 6.7-3.1+deb13u2 Installability problems ACCEPTED

Reason: AtSpi2: do not manage widgets without text interface; avoid excessive verbose bluetooth/usbfs messages

Request: 1113904

µdebs: present

Closes: 845496

chromium 142.0.7444.134-1~deb13u1 Installability problems ACCEPTED

DSA: 6050

CVEs referenced: CVE-2025-12725 CVE-2025-12726 CVE-2025-12727 CVE-2025-12728 CVE-2025-12729

chromium 142.0.7444.59-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6046

CVEs referenced: CVE-2025-12036 CVE-2025-12428 CVE-2025-12429 CVE-2025-12430 CVE-2025-12431 CVE-2025-12432 CVE-2025-12433 CVE-2025-12434 CVE-2025-12435 CVE-2025-12436 CVE-2025-12437 CVE-2025-12438 CVE-2025-12439 CVE-2025-12440 CVE-2025-12441 CVE-2025-12443 CVE-2025-12444 CVE-2025-12445 CVE-2025-12446 CVE-2025-12447

chromium 141.0.7390.122-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6036

CVEs referenced: CVE-2025-12036

chromium 141.0.7390.107-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6026

CVEs referenced: CVE-2025-11756

chromium 141.0.7390.65-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6021

CVEs referenced: CVE-2025-11211 CVE-2025-11458 CVE-2025-11460

chromium 141.0.7390.54-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6016

CVEs referenced: CVE-2025-11205 CVE-2025-11206 CVE-2025-11207 CVE-2025-11208 CVE-2025-11209 CVE-2025-11210 CVE-2025-11211 CVE-2025-11212 CVE-2025-11213 CVE-2025-11215 CVE-2025-11216 CVE-2025-11219

chromium 140.0.7339.207-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6010

CVEs referenced: CVE-2025-10890 CVE-2025-10891 CVE-2025-10892

chromium 140.0.7339.185-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6004

CVEs referenced: CVE-2025-10500 CVE-2025-10501 CVE-2025-10502 CVE-2025-10585

chromium 140.0.7339.127-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5996

CVEs referenced: CVE-2025-10200 CVE-2025-10201

chromium 140.0.7339.80-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5993

CVEs referenced: CVE-2025-9864 CVE-2025-9865 CVE-2025-9866 CVE-2025-9867

Binary debdiffs: all

cjson 1.7.18-3.1+deb13u1 Installability problems ACCEPTED

DSA: 6001

Closes: 1114757

CVEs referenced: CVE-2025-57052

console-setup 1.242~deb13u1 Installability problems ACCEPTED

Reason: fix dz(azerty-oss/deadkeys) into dz, which is what xkb really provides; fix dz default layout

Request: 1113961

µdebs: present

Binary debdiffs: all

console-setup 1.240+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: update keyboard layouts dz(la) into dz(azerty-oss) and Use ca/multix variant instead of ca/multi

Request: 1113961

µdebs: present

Closes: 1111994

cups 2.4.10-3+deb13u2 Installability problems ACCEPTED

Reason: fix operation of checkboxes in admin interface

Request: 1120125

Closes: 1109471

cups 2.4.10-3+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5998

CVEs referenced: CVE-2025-58060 CVE-2025-58364

curl 8.14.1-2+deb13u1 Installability problems c-i failed: aptly/1.6.1+ds1-3 [amd64] cmake/3.31.6-2 [s390x] flask-restful/0.3.10-5 [riscv64] freedombox/25.9.3 [riscv64] mailman3/3.3.10-2 [s390x] mcds/1.9-2 [i386] mpd/0.24.4-1 [s390x] r-cran-curl/6.2.1+dfsg-1 [riscv64] ruby-ethon/0.16.0-3 [s390x] systemd/257.8-1~deb13u1 [amd64] ulfius/2.7.15-2.2 [riscv64] ACCEPTED

Reason: fix buffer over-read issue [CVE-2025-9086]; fix cache poisoning issue [CVE-2025-10148]; fix path traversal issue [CVE-2025-10148]; allow --output to be overridden by --curl-options; fix manpage example for "continue-at"

Request: 1120262

CVEs referenced: CVE-2025-10148 CVE-2025-11563 CVE-2025-9086

debian-edu-config 2.12.903~deb13u1 Installability problems ACCEPTED

Reason: use SERVER_ADDRESS in RewriteRule instead of hard-coded 'www'; drop desktop bundle from bundlesequence

dhcpcd 1:10.1.0-11+deb13u1 Installability problems ACCEPTED

Reason: fix crash when an address is deleted; prevent failure to start if wpasupplicant is not installed

Request: 1116127

Closes: 1111467 1114964

distro-info-data 0.66+deb13u1 Installability problems ACCEPTED

Reason: update EoL date for bookworm; add Ubuntu 26.04 LTS "Resolute Raccoon"

Request: 1118047

dkms 3.2.2-1~deb13u1 Installability problems upgrade ACCEPTED

Reason: new upstream release; stop shipping dkms.service, fixing dependency cycle with cloud-init-network.service; emit a warning if no kernel headers were found

Request: 1118673

Closes: 1107232 1114731

Binary debdiffs: all

dns-root-data 2025080400~deb13u1 Installability problems ACCEPTED

Reason: update root-anchors.p7s (the signature of root-anchors.xml) with a new expiration date

Request: 1120360

Lintian issues: source

dnsdist 1.9.10-1+deb13u1 Installability problems ACCEPTED

Reason: fix denial of service issues [CVE-2025-8671 CVE-2025-30187]

Request: 1118547

Closes: 1115643

CVEs referenced: CVE-2025-30187 CVE-2025-8671

dolphin-emu 2503+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: fix interaction with RetroAchievements; fix translations

Request: 1111808

Closes: 1094989 1108687

Lintian issues: amd64

dovecot 1:2.4.1+dfsg1-6+deb13u2 Installability problems ACCEPTED

Reason: ensure default lmtpd auth_username_format matches the global value; fix oauth configuration parsing; lib-sieve: correctly handle errors; clean up a few typos in default/example configuration

Request: 1118657

Closes: 1111469 1112667 1116070 1116328

Lintian issues: amd64arm64armelarmhfi386ppc64elriscv64s390x

dovecot 1:2.4.1+dfsg1-6+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6019

Closes: 1115964

eas4tbsync 4.17-1~deb13u2 Installability problems all ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116040

Binary debdiffs: all

Lintian issues: source

eas4tbsync 4.17-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: new upstream version to support newer Thunderbird releases

Request: 1116040

emacs-libvterm 0.0.2+git20250113.056ad74-3~deb13u1 Installability problems ACCEPTED

Reason: make elpa-vterm Architecture: any

Missing builds: all

Request: 1117469

Closes: 1115607

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

eperl 2.2.15-1+deb13u1 Installability problems ACCEPTED

Reason: avoid passing a truncated environment on Perl 5.40

Request: 1115815

Closes: 1114004

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

epiphany-browser 48.5-0+deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release; fix various crashes; fix PKCS#11 login for invalid cert/priv pairs

Request: 1119288

evolution 3.56.2-0+deb13u1 Installability problems amd64 arm64 armel armhf i386 ppc64el riscv64 s390x ACCEPTED

Reason: new upstream stable release

Request: 1120151

Closes: 1120149

evolution 3.56.1-1+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6042

Closes: 1116301

evolution-data-server 3.56.2-0+deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release; fix busy loop when using the MH format mail archive

Request: 1120148

Closes: 1111605

fangfrisch 1.9.0-3+deb13u1 Installability problems ACCEPTED

Reason: pdate sanesecurity mirror as the old one will stop working soon

Request: 1120054

Closes: 1117681

Binary debdiffs: all

ffmpeg 7:7.1.2-0+deb13u1 Installability problems ACCEPTED

DSA: 6007

CVEs referenced: CVE-2025-1594

firefox-esr 140.4.0esr-1~deb13u1 Installability problems ACCEPTED

DSA: 6025

CVEs referenced: CVE-2025-11708 CVE-2025-11709 CVE-2025-11710 CVE-2025-11711 CVE-2025-11712 CVE-2025-11714 CVE-2025-11715

Lintian issues: amd64arm64armhfi386riscv64source

firefox-esr 140.3.1esr-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6003

Closes: 1115490

Binary debdiffs: amd64arm64armhfi386ppc64elriscv64s390x

Lintian issues: amd64arm64armhfi386ppc64elriscv64s390x

firefox-esr 140.3.0esr-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6003

CVEs referenced: CVE-2025-10527 CVE-2025-10528 CVE-2025-10529 CVE-2025-10532 CVE-2025-10533 CVE-2025-10536 CVE-2025-10537

Binary debdiffs: amd64arm64armhfppc64elriscv64

Lintian issues: amd64arm64armhfppc64elriscv64

fluidsynth 2.4.4+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: set the default samplerate to 48000 and buffer size to 512 in the service configuration, fixing high CPU usage and distorted sound

Request: 1113778

Closes: 1075976 1105956

folder-account 12.1-1~deb13u1 Installability problems all ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116201

Binary debdiffs: all

Lintian issues: source

fonts-noto-color-emoji 2.051-0+deb13u1 Installability problems ACCEPTED

Reason: new upstream release; add support for the Unicode 17.0 standard

Request: 1119286

Closes: 1115370

freeradius 3.2.7+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: fix compatibility with OpenSSL 3.5.2

Request: 1116983

Closes: 1111328

gegl 1:0.4.62-2+deb13u1 Installability problems ACCEPTED

DSA: 6018

Closes: 1116470

CVEs referenced: CVE-2025-10921

ghostscript 10.05.1~dfsg-1+deb13u1 Installability problems ACCEPTED

DSA: 6024

Closes: 1109270 1116443 1116444

CVEs referenced: CVE-2025-59798 CVE-2025-59799 CVE-2025-7462

Lintian issues: source

gimp 3.0.4-3+deb13u2 Installability problems ACCEPTED

DSA: 6049

Closes: 1119661

CVEs referenced: CVE-2025-10934

gimp 3.0.4-3+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6014

Closes: 1116458 1116459 1116460 1116461

CVEs referenced: CVE-2025-10920 CVE-2025-10922 CVE-2025-10923 CVE-2025-10924

gnome-maps 48.7-0+deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release; fix a regression when requesting route planning from transitous.org; add address format for Austria and Paraguay

Request: 1119291

Closes: 1111673

gnome-session 48.0-1+deb13u1 Installability problems armel ACCEPTED

Reason: fix default app priority for early adopters of Papers and Showtime

Request: 1116012

Closes: 1112257 1115704

google-recaptcha 1.3.0-2+deb13u1 Installability problems ACCEPTED

Reason: fix PHP 8.4 deprecation warnings

Request: 1113860

haproxy 3.0.11-1+deb13u1 Installability problems ACCEPTED

DSA: 6017

CVEs referenced: CVE-2025-11230

hsqldb1.8.0 1.8.0.10+dfsg-12.1+deb13u1 Installability problems ACCEPTED

DSA: 5995

Lintian issues: source

ikvswitch 1.0.4+deb13u1 Installability problems all ACCEPTED

Reason: use Trixie as default distro for the setup; don't fail on errors when taking down an IPMI bridge; use a sysctl.d fragment file rather than sysctl.conf

Request: 1110859

imagemagick 8:7.1.1.43+dfsg1-1+deb13u3 Installability problems ACCEPTED

Reason: fix integer overflow issue [CVE-2025-62171]

Request: 1118434

Closes: 1118340

CVEs referenced: CVE-2025-57803 CVE-2025-62171

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

imagemagick 8:7.1.1.43+dfsg1-1+deb13u2 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 5997

Closes: 1111101 1111102 1111103 1111586 1111587 1112469 1114520

CVEs referenced: CVE-2025-55004 CVE-2025-55005 CVE-2025-55154 CVE-2025-55212 CVE-2025-55298 CVE-2025-57803 CVE-2025-57807

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

incus 6.0.4-2+deb13u1 Installability problems ACCEPTED

DSA: 6027

CVEs referenced: CVE-2025-54286 CVE-2025-54287 CVE-2025-54288 CVE-2025-54289 CVE-2025-54290 CVE-2025-54291 CVE-2025-54293

input-remapper 2.1.1-1+deb13u1 Installability problems ACCEPTED

Reason: add missing python3-psutil runtime dependency

Request: 1113757

Closes: 1113695

Binary debdiffs: all

intel-microcode 3.20250812.1~deb13u1 Installability problems ACCEPTED

DSA: 6030

Closes: 1110983 1112168

CVEs referenced: CVE-2025-20053 CVE-2025-20109 CVE-2025-21090 CVE-2025-22839 CVE-2025-22840 CVE-2025-22889 CVE-2025-24305 CVE-2025-26403 CVE-2025-32086

irqbalance 1.9.4-1+deb13u1 Installability problems ACCEPTED

Reason: enable write access to /proc/irq in service definition

Request: 1114855

Closes: 1114676

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: source

jdupes 1.28.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix detection of unique files

Request: 1117467

Closes: 1063079

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

jetty12 12.0.17-3.1~deb13u1 Installability problems ACCEPTED

DSA: 6006

Closes: 1111765

CVEs referenced: CVE-2025-5115

jetty9 9.4.57-1.1~deb13u1 Installability problems ACCEPTED

DSA: 6005

Closes: 1111766

CVEs referenced: CVE-2025-5115

jing-trang 20241231+repack-1~deb13u1 Installability problems ACCEPTED

Reason: re-import upstream release, to remove incorrectly included files

Request: 1119088

Closes: 1118457

Lintian issues: source

keepassxc-browser 1.9.7+repack1-1+deb13u1 Installability problems ACCEPTED

Reason: fix compatibility with Chromium

Request: 1116705

Closes: 1111635

Binary debdiffs: all

Lintian issues: all

kmail-account-wizard 4:24.12.3-1+deb13u1 Installability problems ACCEPTED

Reason: enable automatic QML dependency detection

Request: 1113804

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

lemonldap-ng 2.21.2+ds-1+deb13u1 Installability problems ACCEPTED

Reason: fix command injection issue [CVE-2025-59518]; don't expose session-id into Ajax responses; fix Google authentication

Request: 1114979

CVEs referenced: CVE-2025-59518

libcommons-lang-java 2.6-10+deb13u1 Installability problems ACCEPTED

Reason: fix an uncontrolled recursion issue [CVE-2025-48924]

Request: 1112671

Closes: 1109126

CVEs referenced: CVE-2025-48924

Binary debdiffs: all

Lintian issues: all

libcommons-lang3-java 3.17.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix an uncontrolled recursion issue [CVE-2025-48924]

Request: 1113711

Closes: 1109125

CVEs referenced: CVE-2025-48924

libcpanel-json-xs-perl 4.39-2~deb13u1 Installability problems ACCEPTED

DSA: 6000

CVEs referenced: CVE-2025-40929

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

libgpiod 2.2.1-2+deb13u1 Installability problems ACCEPTED

Reason: remove unnecessary Breaks/Replaces on libgpiod2 and libgpiod2t64

Request: 1116053

Closes: 1110868

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

libhtp 1:0.5.50-1+deb13u1 Installability problems ACCEPTED

Reason: prevent memory leak with lzma [CVE-2025-53537]

Request: 1114684

Closes: 1109838

CVEs referenced: CVE-2025-53537

libjson-xs-perl 4.040-1~deb13u1 Installability problems ACCEPTED

DSA: 5999

CVEs referenced: CVE-2025-40928

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

libsmb2 6.2+dfsg-2+deb13u1 Installability problems ACCEPTED

Reason: fix buffer overflow issue [CVE-2025-57632]

Request: 1118374

CVEs referenced: CVE-2025-57632

libssh 0.11.2-1+deb13u1 Installability problems ACCEPTED

Reason: fix NULL pointer dereference issue [CVE-2025-8114]; fix denial of service issue [CVE-2025-8277]

Request: 1120325

Closes: 1109860 1114859

CVEs referenced: CVE-2025-8114 CVE-2025-8277

libvirt 11.3.0-3+deb13u1 Installability problems ACCEPTED

Reason: don't require TLS certificate to support keyEncipherment; lower log level of a message, avoiding journal spam when using the LXC driver; fix a daemon crash that occurs when probing capabilities for a QEMU binary that doesn't report information about CPU models

Request: 1115914

Closes: 1110816 1110963 1112481

libwebsockets 4.3.5-1+deb13u1 Installability problems ACCEPTED

Reason: fix denial of service issue [CVE-2025-11677]; fix buffer overflow issue [CVE-2025-11678]

Request: 1120129

Closes: 1118746 1118747

CVEs referenced: CVE-2025-11677 CVE-2025-11678

libxml2 2.12.7+dfsg+really2.9.14-2.1+deb13u2 Installability problems ACCEPTED

Reason: fix XPath recursion depth DoS [CVE-2025-9714]

Request: 1117843

CVEs referenced: CVE-2025-7425 CVE-2025-9714

libxslt 1.1.35-1.2+deb13u2 Installability problems ACCEPTED

DSA: 5979

libyaml-syck-perl 1.34-2+deb13u1 Installability problems ACCEPTED

Reason: prevent memory corruption leading to 'str' value being set on empty keys [CVE-2025-11683]

Request: 1118228

CVEs referenced: CVE-2025-11683

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

linux 6.12.57-1 Installability problems ACCEPTED

Reason: new upstream stable release

µdebs: present

Closes: 1109977 1116358 1118658 1118660 919350

CVEs referenced: CVE-2024-57995 CVE-2025-21833 CVE-2025-22105 CVE-2025-22106 CVE-2025-23130 CVE-2025-37803 CVE-2025-37860 CVE-2025-38105 CVE-2025-38322 CVE-2025-38643 CVE-2025-39678 CVE-2025-39816 CVE-2025-40001 CVE-2025-40003 CVE-2025-40083 CVE-2025-40084 CVE-2025-40106

Binary debdiffs: allamd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: allamd64armelarmhfi386source

linux 6.12.48-1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6008

µdebs: present

Closes: 1114898

CVEs referenced: CVE-2025-22103 CVE-2025-22113 CVE-2025-22124 CVE-2025-22125 CVE-2025-23133 CVE-2025-38272 CVE-2025-38306 CVE-2025-38453 CVE-2025-38502 CVE-2025-38556 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

linux-signed-amd64 6.12.57+1 Installability problems amd64 c-i failed: libguestfs/1:1.54.1-2 [amd64] systemd/257.8-1~deb13u1 [amd64] ACCEPTED

Distribution mismatch: trixie-proposed-updates

Reason: new upstream stable release

µdebs: present

Closes: 1109977 1116358 1118658 1118660 919350

CVEs referenced: CVE-2024-57995 CVE-2025-21833 CVE-2025-22105 CVE-2025-22106 CVE-2025-23130 CVE-2025-37803 CVE-2025-37860 CVE-2025-38105 CVE-2025-38322 CVE-2025-38643 CVE-2025-39678 CVE-2025-39816 CVE-2025-40001 CVE-2025-40003 CVE-2025-40083 CVE-2025-40084 CVE-2025-40106

Binary debdiffs: amd64

Lintian issues: amd64source

linux-signed-amd64 6.12.48+1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6008

µdebs: present

Closes: 1114898

CVEs referenced: CVE-2025-22103 CVE-2025-22113 CVE-2025-22124 CVE-2025-22125 CVE-2025-23133 CVE-2025-38272 CVE-2025-38306 CVE-2025-38453 CVE-2025-38502 CVE-2025-38556 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

linux-signed-arm64 6.12.57+1 Installability problems arm64 ACCEPTED

Distribution mismatch: trixie-proposed-updates

Reason: new upstream stable release

µdebs: present

Closes: 1109977 1116358 1118658 1118660 919350

CVEs referenced: CVE-2024-57995 CVE-2025-21833 CVE-2025-22105 CVE-2025-22106 CVE-2025-23130 CVE-2025-37803 CVE-2025-37860 CVE-2025-38105 CVE-2025-38322 CVE-2025-38643 CVE-2025-39678 CVE-2025-39816 CVE-2025-40001 CVE-2025-40003 CVE-2025-40083 CVE-2025-40084 CVE-2025-40106

Binary debdiffs: arm64

Lintian issues: arm64source

linux-signed-arm64 6.12.48+1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6008

µdebs: present

Closes: 1114898

CVEs referenced: CVE-2025-22103 CVE-2025-22113 CVE-2025-22124 CVE-2025-22125 CVE-2025-23133 CVE-2025-38272 CVE-2025-38306 CVE-2025-38453 CVE-2025-38502 CVE-2025-38556 CVE-2025-38676 CVE-2025-38677 CVE-2025-40300

Reason: handle failure to set cregs from tmux

Request: 1118674

Closes: 1109004

log4cxx 1.4.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix improper escaping issues [CVE-2025-54812 CVE-2025-54813]

Request: 1120278

Closes: 1111879 1111881

CVEs referenced: CVE-2025-54812 CVE-2025-54813

logcheck 1.4.5+deb13u1 Installability problems ACCEPTED

Reason: update ignore.d.paranoid/ssh and ignore.d.server/ssh

Request: 1112479

lttng-modules 2.13.18-1+deb13u1 Installability problems ACCEPTED

Reason: fix potential kernel crash with syscall tracing

Request: 1118737

luksmeta 9-4+deb13u1 Installability problems ACCEPTED

Reason: fix data corruption issue with LUKS1 [CVE-2025-11568]

Request: 1119910

Closes: 111828

CVEs referenced: CVE-2025-11568

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

lxcfs 6.0.4-1+deb13u1 Installability problems ACCEPTED

Reason: add missing dependency on fuse3

Request: 1115899

Closes: 1114596

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

lxd 5.0.2+git20231211.1364ae4-9+deb13u1 Installability problems ACCEPTED

DSA: 6028

CVEs referenced: CVE-2025-54286 CVE-2025-54287 CVE-2025-54288 CVE-2025-54293

Lintian issues: all

mailfromd 9.0-1+b3 Installability problems ACCEPTED

Reason: rebuild to fix symbol lookup error

Request: 1115860

Binary debdiffs: armelarmhf

mailfromd 9.0-1+b2 Installability problems ACCEPTED

Distribution mismatch: sid, trixie

Reason: rebuild to fix symbol lookup error

Request: 1115860

Binary debdiffs: amd64arm64i386ppc64elriscv64s390x

mailmindr 1.7.1-2~deb13u1 Installability problems all ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116523

Binary debdiffs: all

Lintian issues: source

malcontent 0.13.0-2+deb13u1 Installability problems ACCEPTED

Reason: fix filtering snaps after snapd 2.72; fix listing flatpaks in parental control UI; fix memory leak when checking snaps

Request: 1120143

Closes: 1113776 1120080

mapserver 8.4.0-4+deb13u1 Installability problems ACCEPTED

Reason: fix SQL injection issue [CVE-2025-59431]

Request: 1116386

CVEs referenced: CVE-2025-59431

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

mc 3:4.8.33-1+deb13u1 Installability problems ACCEPTED

Reason: fix accidental use of >&10 for subshells, avoiding delays at startup

Request: 1112120

Closes: 1108061

modsecurity-apache 2.9.11-1+deb13u1 Installability problems ACCEPTED

Reason: fix security issues relating to response Content-Type handling [CVE-2025-54571]

Request: 1112097

Closes: 1110480

CVEs referenced: CVE-2025-54571

monitoring-plugins 2.4.0-3+deb13u1 Installability problems ACCEPTED

Reason: fix check_users in combination with systemd; fix check_mysql plugin with newer MySQL versions

Request: 1118443

Closes: 1110265 1116027

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: allamd64arm64armelarmhfi386ppc64elriscv64s390x

mpv 0.40.0-3+deb13u1 Installability problems ACCEPTED

Reason: create missing folders for watch history

Request: 1119287

Closes: 1115938

mrtg 2.17.10-13+deb13u1 Installability problems ACCEPTED

Reason: fix duplicate WorkDir lines in cfgmaker output

Request: 1116665

Closes: 1111333

nextcloud-desktop 3.16.7-1~deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release

Request: 1111236

Closes: 1091614

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

nfdump 1.7.5-2+deb13u1 Installability problems ACCEPTED

Reason: honour subdir (-S) when usng dynamic FlowSource (-M)

Request: 1112380

Closes: 1112376

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

nncp 8.11.0-4+deb13u1 Installability problems ACCEPTED

DSA: 6012

Closes: 1115848

CVEs referenced: CVE-2025-60020

node-sha.js 2.4.11+~2.4.0-2+deb13u1 Installability problems ACCEPTED

DSA: 6002

Closes: 1111769

CVEs referenced: CVE-2025-9288

Binary debdiffs: all

Lintian issues: all

node-tar-fs 3.0.9+~cs2.0.4-1+deb13u1 Installability problems ACCEPTED

DSA: 6013

Closes: 1116338

CVEs referenced: CVE-2025-59343

nova 2:31.0.0-6+deb13u1 Installability problems all ACCEPTED

Reason: fix information disclosure issue

Request: 1112283

Closes: 1111689

Binary debdiffs: all

nvidia-graphics-drivers-tesla-535 535.274.02-1~deb13u1 Installability problems ACCEPTED

Reason: fix use after free issue [CVE-2025-23280]; fix privilege escalation issue [CVE-2025-23282]; fix denial of service issues [CVE-2025-23300 CVE-2025-23330 CVE-2025-23332 CVE-2025-23345]

Request: 1119115

Closes: 1118688

CVEs referenced: CVE-2025-23280 CVE-2025-23282 CVE-2025-23300 CVE-2025-23330 CVE-2025-23332 CVE-2025-23345

Binary debdiffs: amd64arm64i386

Lintian issues: amd64arm64i386

onetbb 2022.1.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix test failures on single-CPU test machines; skip flaky mutex tests

Request: 1116575

Closes: 1094260 1108053

open-vm-tools 2:12.5.0-2+deb13u1 Installability problems ACCEPTED

Reason: Disable (default) the execution of the SDMP get-versions.sh script [CVE-2025-41244]

Request: 1116938

CVEs referenced: CVE-2025-41244

Binary debdiffs: amd64arm64i386

openjdk-21 21.0.9+10-1~deb13u1 Installability problems ACCEPTED

DSA: 6037

Binary debdiffs: amd64armhfi386ppc64els390x

openjdk-25 25.0.1+8-1~deb13u1 Installability problems ACCEPTED

DSA: 6039

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: source

openssl 3.5.4-1~deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release

Request: 1119854

µdebs: present

Binary debdiffs: allamd64arm64armelarmhfi386ppc64elriscv64s390x

openssl 3.5.1-1+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

DSA: 6015

µdebs: present

CVEs referenced: CVE-2025-9230 CVE-2025-9231 CVE-2025-9232

openvpn-auth-radius 2.1-9+deb13u1 Installability problems ACCEPTED

Reason: fix packet authentication

Request: 1119085

Closes: 1118479

Binary debdiffs: armelarmhf

orphan-sysvinit-scripts 0.21+deb13u2 Installability problems ACCEPTED

Reason: add haveged init script

Request: 1119719

Closes: 1118622

Binary debdiffs: all

patroni 4.0.7-3~deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release

Request: 1118458

Binary debdiffs: all

pdns-recursor 5.2.6-0+deb13u1 Installability problems ACCEPTED

DSA: 6045

CVEs referenced: CVE-2025-59023

pdns-recursor 5.2.4-2+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: switch to dpkg/default.mk; drop CARGO_REGISTRY override

Request: 1114595

Closes: 1113814

Binary debdiffs: amd64arm64ppc64elriscv64s390x

phpmyadmin 4:5.2.2-really+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: address XSS vulnerability in bundled jquery.validate.js [CVE-2025-3573]

Request: 1113979

CVEs referenced: CVE-2025-3573

poppler 25.03.0-5+deb13u2 Installability problems ACCEPTED

Reason: fix infinite recursion [CVE-2025-50420]

Request: 1112668

Closes: 1110463

CVEs referenced: CVE-2025-50420

postfix 3.10.5-1~deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release; fix typo which caused recreating cadir in chroot and excessive logging

Request: 1119256

Closes: 1115412

presage 0.9.1-2.6+deb13u1 Installability problems ACCEPTED

Reason: prevent crash with apostrophes in completion suggestions

Request: 1112276

Closes: 770831

Binary debdiffs: arm64armelarmhfppc64elriscv64s390x

Lintian issues: source

privatebin-cli 2.0.2-1+deb13u1 Installability problems ACCEPTED

Reason: fix connections to pastebins using GCM ciphers

Closes: 1108675

puppet-module-puppetlabs-rabbitmq 8.5.0-8+deb13u1 Installability problems ACCEPTED

Reason: fix list_users provider; setup all nodes as disk nodes

Request: 1111734

puppet-module-tempest 25.0.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix autoloading of openstack provider

Request: 1111819

python-eventlet 0.39.1-2+deb13u1 Installability problems ACCEPTED

Reason: fix HTTP request smuggling by discarding HTTP chunk trailers [CVE-2025-58068]

Request: 1113761

Closes: 1112515

CVEs referenced: CVE-2025-58068

python-internetarchive 5.4.0-2~deb13u1 Installability problems ACCEPTED

DSA: 6035

Closes: 1114635

CVEs referenced: CVE-2025-58438

Lintian issues: source

qemu 1:10.0.6+ds-0+deb13u2 Installability problems ACCEPTED

Reason: fix wrong emulation of FIBMAP and FIGETBSZ ioctls

Request: 1120050

Closes: 1095935 1119257

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

qemu 1:10.0.6+ds-0+deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: new upstream stable release; fix denial of service issue [CVE-2024-8354]

Request: 1115486

Closes: 1082377 1095935 1108387 1111809

CVEs referenced: CVE-2024-8354

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

qt6-base 6.8.2+dfsg-9+deb13u1 Installability problems ACCEPTED

Reason: fix high CPU usage of kwin_x11 on screen lock (X11)

Request: 1113799

quicktext 6.4.6-1~deb13u1 Installability problems all ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116526

Binary debdiffs: all

rabbitmq-server 4.0.5-6+deb13u2 Installability problems ACCEPTED

Reason: fix logging on sensitive data [CVE-2025-50200]

Request: 1111733

Closes: 1108075

CVEs referenced: CVE-2025-50200

redis 5:8.0.2-3+deb13u1 Installability problems ACCEPTED

DSA: 6020

CVEs referenced: CVE-2025-46817 CVE-2025-46818 CVE-2025-46819 CVE-2025-49844

request-tracker5 5.0.7+dfsg-4+deb13u1 Installability problems ACCEPTED

DSA: 6031

CVEs referenced: CVE-2025-61873 CVE-2025-9158

riseup-vpn 0.24.10+ds1-1+deb13u1 Installability problems ACCEPTED

Reason: add dependency on qml6-module-qtcore

Request: 1114929

Closes: 1110558

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

rocm-hipamd 5.7.1-6+deb13u1 Installability problems ACCEPTED

Reason: fix linking for programs that include <hip/hip_bf16.h> in more than one translation unit; fix spelling error in roc-obj-ls manpage

Request: 1120350

Closes: 1107681 1116585

rsyslog-doc 8.2504.0+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: switch documentation theme to sphinx_rtd_theme

Request: 1115530

Binary debdiffs: all

ruby-rack 3.1.18-1~deb13u1 Installability problems ACCEPTED

DSA: 6048

Closes: 1117627 1117628 1117855 1117856

CVEs referenced: CVE-2025-61770 CVE-2025-61771 CVE-2025-61772 CVE-2025-61780 CVE-2025-61919

Binary debdiffs: all

ruby-sys-filesystem 1.4.4-1+deb13u1 Installability problems ACCEPTED

Reason: fix detection of 64-bit OS on s390x and alpha

Request: 1115749

Closes: 1114552

rust-virtiofsd 1.13.2-1+deb13u1 Installability problems ACCEPTED

Reason: add missing dependency on uidmap

Request: 1119142

Closes: 1109051

Binary debdiffs: amd64arm64ppc64elriscv64s390x

sail 0.9.8-1+deb13u1 Installability problems ACCEPTED

Reason: fix memory corruption issues [CVE-2025-32468 CVE-2025-35984 CVE-2025-46407 CVE-2025-50129 CVE-2025-52456 CVE-2025-52930 CVE-2025-53085 CVE-2025-53510]

Request: 1113882

Closes: 1112346

CVEs referenced: CVE-2025-32468 CVE-2025-35984 CVE-2025-46407 CVE-2025-50129 CVE-2025-52456 CVE-2025-52930 CVE-2025-53085 CVE-2025-53510

samba 2:4.22.6+dfsg-0+deb13u1 Installability problems ACCEPTED

Reason: new upstream stable release; fix uninitialized memory disclosure issue [CVE-2025-9640], command injection issue [CVE-2025-10230]

Request: 1119136

CVEs referenced: CVE-2025-10230 CVE-2025-9640

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: amd64arm64armelarmhfi386ppc64elriscv64s390x

samhain 4.1.4-6+deb13u1 Installability problems ACCEPTED

Reason: disable dnmalloc, preventing possible segfaults

Request: 1115257

Closes: 1111631

Lintian issues: amd64arm64armelarmhfi386ppc64elriscv64s390x

shibboleth-sp 3.5.0+dfsg-2+deb13u1 Installability problems ACCEPTED

DSA: 5994

Closes: 1114506

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

spip 4.4.3+dfsg-1+deb13u1 Installability problems ACCEPTED

Reason: fix open redirect issue on AJAX login form

Request: 1117828

squid 6.13-2+deb13u1 Installability problems ACCEPTED

DSA: 6047

Closes: 1117048 1118341

CVEs referenced: CVE-2025-59362 CVE-2025-62168

stardict 3.0.7+git20220909+dfsg-8~deb13u1+b1 Installability problems amd64 ACCEPTED

Reason: rebuild on a buildd

Binary debdiffs: amd64

stardict 3.0.7+git20220909+dfsg-8~deb13u1 Installability problems ACCEPTED

Reason: split plugin in to a new stardict-plugin-network-dictionary package; disable stardict_dictdotcn.so plugin

Request: 1113750

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: amd64arm64armelarmhfi386ppc64elriscv64s390xsource

suricata 1:7.0.10-1+deb13u1 Installability problems i386 riscv64 s390x ACCEPTED

Reason: fix uncontrolled memory use issue [CVE-2025-53538]; fix detection bypass issue [CVE-2025-59147]

Request: 1116945

Closes: 1109806

CVEs referenced: CVE-2025-53538 CVE-2025-59147

Binary debdiffs: arm64armelarmhfi386ppc64elriscv64s390x

syslog-ng 4.8.1-5+deb13u1 Installability problems ACCEPTED

Reason: disable writing of log statistics by default

Request: 1117909

Closes: 1110329

Lintian issues: allamd64arm64armelarmhfi386ppc64elriscv64s390x

systemd 257.9-1~deb13u1 Installability problems c-i failed: conmon/2.1.12-4 [amd64] ACCEPTED

Reason: upstream stable update: fix DNS-over-TLS handling in systemd-resolved; improve service and unit lifecycle stability; handle TPM2 and pcrlock corner cases; update documentation; refresh hwdb data; sync with Linux UAPI headers

Request: 1114755

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

systemd 257.8-1~deb13u2 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: systemd-networkd: Fix segfault on VLAN-aware bridges

Closes: 1112535

systemd-boot-efi-amd64-signed 257.9+1~deb13u1 Installability problems ACCEPTED

Distribution mismatch: trixie-proposed-updates

Reason: upstream stable update: fix DNS-over-TLS handling in systemd-resolved; improve service and unit lifecycle stability; handle TPM2 and pcrlock corner cases; update documentation; refresh hwdb data; sync with Linux UAPI headers

Binary debdiffs: amd64

systemd-boot-efi-amd64-signed 257.8+1~deb13u2 Installability problems ACCEPTED

This upload was superseded by a more current one.

Distribution mismatch: trixie-proposed-updates

Reason: systemd-networkd: Fix segfault on VLAN-aware bridges

Closes: 1112535

Binary debdiffs: amd64

systemd-boot-efi-arm64-signed 257.9+1~deb13u1 Installability problems ACCEPTED

Distribution mismatch: trixie-proposed-updates

Reason: upstream stable update: fix DNS-over-TLS handling in systemd-resolved; improve service and unit lifecycle stability; handle TPM2 and pcrlock corner cases; update documentation; refresh hwdb data; sync with Linux UAPI headers

Binary debdiffs: arm64

systemd-boot-efi-arm64-signed 257.8+1~deb13u2 Installability problems ACCEPTED

This upload was superseded by a more current one.

Distribution mismatch: trixie-proposed-updates

Reason: systemd-networkd: Fix segfault on VLAN-aware bridges

Closes: 1112535

Binary debdiffs: arm64

tango 10.0.2+dfsg1-2+deb13u1 Installability problems ACCEPTED

Reason: fix broken communication between versions 9 and 10

Request: 1119301

Closes: 1118207

tbsync 4.16-1~deb13u2 Installability problems all ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116196

Binary debdiffs: all

Lintian issues: source

tbsync 4.16-1~deb13u1 Installability problems ACCEPTED

This upload was superseded by a more current one.

Reason: new upstream version to support newer Thunderbird releases

Request: 1116196

thunderbird 1:140.4.0esr-1~deb13u1 Installability problems ACCEPTED

DSA: 6040

Binary debdiffs: allamd64arm64i386ppc64elriscv64

Lintian issues: amd64arm64i386ppc64elriscv64source

tiff 4.7.0-3+deb13u1 Installability problems ACCEPTED

DSA: 6023

Closes: 1111317 1111323 1111878

CVEs referenced: CVE-2024-13978 CVE-2025-8961 CVE-2025-9165 CVE-2025-9900

tryton-sao 7.0.28+ds1-1+deb13u1 Installability problems ACCEPTED

DSA: 6034

ublock-origin 1.67.0+dfsg-1~deb13u1 Installability problems ACCEPTED

Reason: new upstream release; improve user experience and add new filter capabilities

Request: 1119798

Binary debdiffs: all

Lintian issues: source

valkey 8.1.1+dfsg1-3+deb13u1 Installability problems ACCEPTED

DSA: 6022

CVEs referenced: CVE-2025-46817 CVE-2025-46818 CVE-2025-46819 CVE-2025-49844

virt-manager 1:5.0.0-5+deb13u1 Installability problems ACCEPTED

Reason: fix "Browse local" function

Request: 1119303

Closes: 1112514

watcher 14.0.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix information disclosure issue

Request: 1112282

Closes: 1111692

webkit2gtk 2.50.1-1~deb13u1 Installability problems ACCEPTED

DSA: 6042

Binary debdiffs: allamd64arm64armelarmhfi386ppc64elriscv64s390x

Lintian issues: i386source

wike 3.1.1-1+deb13u1 Installability problems ACCEPTED

Reason: set a User Agent, to ensure that the mobile version of Wikipedia is used

Request: 1120048

Closes: 1119977

Lintian issues: all

wtmpdb 0.73.0-3+deb13u1 Installability problems ACCEPTED

Reason: rotate and prune logs using logrotate; store logs in system log directory

Request: 1117876

Closes: 1076308 1094965 1117719

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x

xnote 4.5.48-1~deb13u1 Installability problems all install upgrade ACCEPTED

Reason: new upstream version to support newer Thunderbird releases

Request: 1116547

Binary debdiffs: all

Lintian issues: source

xorg 1:7.7+24+deb13u1 Installability problems ACCEPTED

Reason: fix login failure with sessions using multiple words in invocation

Request: 1120345

Closes: 1094494

xorg-server 2:21.1.16-1.3+deb13u1 Installability problems ACCEPTED

DSA: 6044

µdebs: present

CVEs referenced: CVE-2025-62229 CVE-2025-62230 CVE-2025-62231

Lintian issues: source

xssproxy 1.0.0-1+deb13u1 Installability problems ACCEPTED

Reason: fix compatibility with Chromium and xdg-desktop-portal-gtk

Request: 1113902

Closes: 1092965 1115458

Binary debdiffs: amd64arm64armelarmhfi386ppc64elriscv64s390x