Hi Team, I am writing to follow up on the security report submitted regarding 121 unresolved CVEs affecting chromium, tiff, and cups packages in Debian Trixie. Given the "grave" severity and the large volume of critical and high-severity vulnerabilities-particularly the 44 critical vulnerabilities impacting the current chromium version (151.0.7922.173-1~deb13u1)-our container production pipeline remains significantly exposed.
Could you please provide an update on: * The current status or timeline for backporting Chromium upstream version 152.0.7977.64/.65 (or newer) into the trixie-security repository? * Whether security updates for tiff (targeting CVE-2026-52490) and cups (targeting CVE-2026-34980) are currently being staged or reviewed for the Trixie release? We appreciate the security team's hard work in maintaining the distribution and thank you in advance for your guidance. Regards, Joshua Aldwin L. Samonte Software Prod & Plat Eng Specialist Advanced Technology Centers in the Philippines *: [email protected]<mailto:[email protected]> ________________________________ This message is for the designated recipient only and may contain privileged, proprietary, or otherwise confidential information. If you have received it in error, please notify the sender immediately and delete the original. Any other use of the e-mail by you is prohibited. Where allowed by local law, electronic communications with Accenture and its affiliates, including e-mail and instant messaging (including content), may be scanned by our systems for the purposes of information security, AI-powered support capabilities, and assessment of internal compliance with Accenture policy. Your privacy is important to us. Accenture uses your personal data only in compliance with data protection laws. For further information on how Accenture processes your personal data, please see our privacy statement at https://www.accenture.com/us-en/privacy-policy. ______________________________________________________________________________________ www.accenture.com

