Hi,
There's a few security patches that the security team would like me to
do through p-u.
What does this change regarding Debian LTS? As I cannot upload to
bookrowm p-u anymore, should I just upload the fixes through
bookworm-security? Will we then issue DLA? If so, it feels weird that
oldstable would have a security announce, but not stable.
IMO, we really need to address all of this, make make the process more
unified between LTS and stable/oldstable still maintained with the
release team and security team.
I'd like to upload fixes for all of what you see in the first column
(ie: Zed 2022.1 (bookworm)) in this page:
https://wiki.debian.org/OpenStack/CVE-2026
All what's in orange needs an upload to bookworm-security.
I have patches ready in the debian/zed, which I usually just copy in the
debian/bookworm branch in Git. How should I proceed then, since the
security team told me all of them should be processed through p-u ?
Please share your thoughts,
Cheers,
Thomas Goirand (zigo)