I've worked during february on the below listed packages, for Freexian
LTS/ELTS [1]

Many thanks to Freexian and our sponsors [2] for providing this opportunity!

LTS
===

sudo
-------

* Help to fix testsuite
* Release DLA-4472-1 fixing CVE-2023-28486 CVE-2023-28487

apache2
------------

* Investigate a regression for apache2 http2 module

netty 

-------
* Upload to sid fixes
* Prepare dsa fixing CVE-2025-67735 CVE-2025-59419      CVE-2025-58057 
CVE-2025-58056 and CVE-2025-55163

zabbix
----------

Release DLA 4473-1 fixing CVE-2025-27234
Propose PU for trixie see #1127437

ca-certificates
--------------------

* prepare with Arnault a bullseye release
* release DLA 4485-1

gpsd
--------

Release a trixie PU

ELTS
-------

tomcat9
-------------

Fix a regression with apo, this was an hard to debug case, due to build tool 
change

zabbix
----------

Drop zabbix no CVE except ignored

bind9
--------

Write a testsuite for upgrading bind9. Upload a few package 
bind-dyndb-ldap_11.6-3~deb10u1 and 
isc-dhcp_4.4.1-2+deb10u4 due to ABI/API change

ca-certificate
-------------------

With arnaud do some work on ca-certificates buster and test a release
We are testing a strech upgrade and we found that conversion from PKCS12 to JKS 
was not functionnal 
in buster/stretch due to postinst shell being dash and not bash. We proposed an 
upgrade to ca-certificates-java master

Other
--------

Upgrade LTS salsa pipeline

I was also frontdesk

I Propose gokey as limited and I do triaging


Cheers

rouca

[1]  https://www.freexian.com/lts/
[2]  https://www.freexian.com/lts/debian/#sponsors

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to