[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Debian LTS and ELTS - January 2022



Here is my public monthly report.

Thanks to our sponsors for making this possible, and to Freexian for
handling the offering.
https://www.freexian.com/services/debian-lts.html#sponsors


LTS

- salt
  - Finish work started in December
  - DLA 2480-2
    https://lists.debian.org/debian-lts-announce/2022/01/msg00000.html

- slurm-llnl
  - Finish work started in December
  - Requalify CVE-2021-31215 and backport fix
  - DLA 2886-1
    https://lists.debian.org/debian-lts-announce/2022/01/msg00011.html

- golang1.7, golang1.8
  - Harmonize with bullseye 11.2 update
  - DLA-2891-1
    https://lists.debian.org/debian-lts-announce/2022/01/msg00016.html
  - DLA-2892-1
    https://lists.debian.org/debian-lts-announce/2022/01/msg00017.html

- prosody: investigate CVE-2022-0217 and drop update

- zabbix: work in progress, assessing vulnerability status

- CVEs triage
  - Add 15 packages for update
  - Assess stretch vulnerability status for 15-20 CVEs
  - Answer security team about CVE-2021-3997/systemd notes
  - Exchange with Emilio about re-adding vim
  - Fix minor tracking issues


ELTS

- salt
  - common work with LTS
  - end of support, publish December work
  - ELA-537-1
    https://deb.freexian.com/extended-lts/updates/ela-537-1-salt/

- golang
  - common work with LTS
  - ELA-547-1
    https://deb.freexian.com/extended-lts/updates/ela-547-1-golang/

- zabbix: common work with LTS

- CVEs triage
  - common work with LTS


Documentation and tooling

- LTS documentation
  - slurm-llnl: testing follow-ups
    https://wiki.debian.org/LTS/TestSuites/slurm-llnl
  - golang: testing follow-ups
    https://wiki.debian.org/LTS/TestSuites/golang

- Check and announce DLA-2878-1 for roundcube (upload from maintainer)
  https://lists.debian.org/debian-lts/2022/01/msg00006.html
  https://lists.debian.org/debian-lts-announce/2022/01/msg00005.html


-- 
Sylvain Beucler
Debian LTS Team


Reply to: