Hi,

There's a few security patches that the security team would like me to do through p-u.

What does this change regarding Debian LTS? As I cannot upload to bookrowm p-u anymore, should I just upload the fixes through bookworm-security? Will we then issue DLA? If so, it feels weird that oldstable would have a security announce, but not stable.

IMO, we really need to address all of this, make make the process more unified between LTS and stable/oldstable still maintained with the release team and security team.

I'd like to upload fixes for all of what you see in the first column (ie: Zed 2022.1 (bookworm)) in this page:

https://wiki.debian.org/OpenStack/CVE-2026

All what's in orange needs an upload to bookworm-security.

I have patches ready in the debian/zed, which I usually just copy in the debian/bookworm branch in Git. How should I proceed then, since the security team told me all of them should be processed through p-u ?

Please share your thoughts,
Cheers,

Thomas Goirand (zigo)

Reply via email to