[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Debian LTS and ELTS - November 2023

Here is my public monthly report.

Thanks to our sponsors for making this possible, and to Freexian for
handling the offering.


- Front Desk (week 48, November half)
  - Mark 5 packages for update
  - Triage or precise triage for 10+ CVEs
  - Help analyze curl and flatpak synchronization with bullseye/oldstable
    (whether to backport some minor security fixes from the dot release)
  - Help analyze golang-yaml.v2 update (DLA-3479-1) in the context of
    a potential a mass reverse-dependencies rebuild

- cacti
  - Start triaging recent CVE mass-submissions
  - Coordinate Git reference repository for LTS with maintainer


- Front Desk (week 48, November half)
  - Associate CVEs from newer, branched Debian packages with different
    names to older ELTS packages (mariadb*, netty*, postgresql*,
  - Mark 5 supported packages for update
  - Triage or precise triage for 10+ CVEs
  - Clean-ups/precisions in work queue
  - Help analyze Go-based (statically-compiled) packages support
  - Help analyze kde4libs again in the context of checking packages
    with limited support

- freerdp [v1]
  - Start triaging CVEs backlog (synchronized with freerdp2 last month)

Documentation and tooling

- Work queue report (internal "find-work" tool)
  - Minor clean-ups and clarifications following last month's work

- ELTS documentation: clarification on jessie signatures

- IRC team meeting

Sylvain Beucler
Debian LTS Team

Reply to: