[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#956216: buster-pu: package systemd/241-7~deb10u3



Control: tags -1 + confirmed d-i

On Wed, 2020-04-08 at 16:11 +0200, Michael Biebl wrote:
> I'd like to make a stable/buster upload for systemd fixing CVE-2020-
> 1712
> https://security-tracker.debian.org/tracker/CVE-2020-1712
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=950732
> 
> After talking to the security team (namely Salvatore), we decided to
> fix this issue via a stable upload.
> 
> The debdiff is a bit on the larger side, unfortunately.
> Salvatore made a smaller backport avoiding some of the refactorings
> that were done upstream
> https://salsa.debian.org/systemd-team/systemd/-/merge_requests/69
> 
> I decided to go with the backport provided by upstream that was done
> for the v241-stable branch mainly for two reasons:
> - It makes potential future cherry-picks easier
> - Doing our own backport has the potential to introduce Debian
> specific bugs
> 

I'd be OK with that, but this will need a KiBi-ack, so CCing and
tagging accordingly.

Regards,

Adam


Reply to: