On Sun, Jun 14, 2026 at 1:48 PM Salvatore Bonaccorso <[email protected]> wrote: > Yes thank you that helps. Moritz did mark those already as no-dsa in > the tracker, would you be open to fix those then via upcoming point > release for trixie? Indeed, I will prepare the Trixie PU. Meanwhile I've found that there's an additional changeset for this vulnerability [1]. I don't know how official it is, but it might be worth adding it to the Debian security entry if you agree.
Regards, Laszlo/GCS [1] https://sqlite.org/src/info/fad98805b7d73abf

