[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Debian LTS and ELTS report - August 2025



Hi,

I've worked during August 2025 on the below listed packages, for
Freexian LTS/ELTS [1].

Many thanks to Freexian and sponsors [2] for providing this opportunity!

LTS
===

- Worked on openvpn to apply a regression fix for CVE-2024-5594.
- Published DLA-4079-2 for openvpn/bullseye to fix CVE-2025-5594
  regression.
  (https://lists.debian.org/debian-lts-announce/2025/09/msg00000.html)

ELTS
====

- Worked on openvpn to backport the fixes for CVE-2022-0547 and
  CVE-2024-5594 in buster (ongoing work).
  - Stopped when the regression was found and proceeded to fix it on
    bullseye and bookworm before resuming on buster and stretch.

Tooling, Documentation and Misc
===============================

- Worked on openvpn to apply a regression fix for CVE-2024-5594 in
  bookworm.
  (https://salsa.debian.org/debian/openvpn/-/merge_requests/16)
  - Filled bookworm-pu to get the fix in bookworm in 12.13.
    (https://bugs.debian.org/1112645)
- Attended LTS meeting.
- Worked on setting up KGB notifications on irc of MRs against
  lts-team.pages.debian.net.
  (https://salsa.debian.org/lts-team/lts-extra-tasks/-/issues/91)

Best regards,
Charles

[1]  https://www.freexian.com/lts/
[2]  https://www.freexian.com/lts/debian/#sponsors


Reply to: