Package: libparse-pidl-perl
Version: 2:4.9.5+dfsg-5+deb10u1+really0.02
X-debbugs-cc: secur...@debian.org

It seems that the recent update to samba in buster-security generated a libparse-pidl-perl package with a lower version number than the version already in buster. As far as I can tell this has the following consequences.

1. Users will not get the update to this package, (I don't think this is a big problem in this particular case as I don't see anything perl related in the changelog). 2. I suspect it will stop the security update getting rolled in to the next point release. 3. It may mess up downstream infrastructure (that is how I ran into the issue).

I see two possible fixes.

1. Avoid using version numbers for the samba package that will trigger this issue. 2. Change the logic that generates the version numbers for the libparse-pidl-perl package.

I have knocked up some code to implement the second option and I am testing it now. If it works out ok i'll post a patch here.

Reply via email to