[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

systemd/247.3-7+deb11u8



Hello team,

I've prepared an update for systemd, two questions:

1) Given that severity of CVE-2026-29111 is higher <= bullseye (stack overwrite), I suppose I won't wait for the fix to reach bookworm and can upload straight away (after debusine workflow completes) ?

Another possibility is to wait for info regarding new CVEs in the tracker, that just appeared yesterday, and apparently don't have CVE number yet (they appear in the tracker as TEMP-XXX). And maybe fix those as well, before uploading.

Not sure what's best here, wait or not wait, opinions welcome :)

2) If anyone wants to have a look and review, would be nice, given it's an important package. Pushed at: https://salsa.debian.org/arnaudr/systemd.

Thanks!

Arnaud

--

Some links:

- https://deb.freexian.com/extended-lts/tracker/source-package/systemd
- https://deb.freexian.com/extended-lts/tracker/CVE-2026-29111


Reply to: