Package: release.debian.org Severity: normal Tags: stretch User: release.debian.org@packages.debian.org Usertags: pu Dear release team, I'd like to update opensc in stretch to 0.1.9-1~deb9u1 in order to fix a regression that introduced with the last update, 0.1.6-3+deb9u1, in an attempt to fix security issues (see #910786 for details). I am aware that this is by no means a minimal change. I have tried to fix the backported patch that broke Yubikey NEO support for me, but I have not been able to restore functionality without reverting the patch that fixed a CVE-worthy buffer overflow. Because I own no other smartcard hardware, I cannot tell if the other patches that were introduced with 0.16.0-3+deb9u1 broke any other hardware support. The .debian.tar.xz is attached. Given the size of the effective change, a debdiff does not seem to make a lot of sense. I have not done an upload yet. Cheers, -Hilko
Attachment:
opensc_0.19.0-1~deb9u1.debian.tar.xz
Description: application/xz