This bug was fixed in the package frr - 10.7.0-2ubuntu1
---------------
frr (10.7.0-2ubuntu1) stonking; urgency=medium
* Merge with Debian unstable (LP: #2153190). Remaining changes:
- Fix logging with Ubuntu's unprivileged rsyslog (LP #1958162):
+ d/frr.postinst: adjust log directory ownership
+ d/frr.logrotate: change rotated log file ownership
- d/frr.postinst: reintroduce check for syslog's existence
- d/control: Transition to lua5.5 (LP #2155757)
* Dropped:
- d/rules: set INET_NTOP_NO_OVERRIDE to workaround build failure with newer
glibc and FORTIFY_SOURCE
[Fixed upstream]
frr (10.7.0-2) sid; urgency=medium
* Updating python3-sphinx build-depends to fix FTBFS on trixie.
* Cherry-picking patch from upstream to fix restarting frr workers with
newer systemd.
frr (10.7.0-1ubuntu1) stonking; urgency=medium
* Merge with Debian unstable (LP: #2153190). Remaining changes:
- Fix logging with Ubuntu's unprivileged rsyslog (LP #1958162):
+ d/frr.postinst: adjust log directory ownership
+ d/frr.logrotate: change rotated log file ownership
- d/rules: set INET_NTOP_NO_OVERRIDE to workaround build failure with newer
glibc and FORTIFY_SOURCE
- d/frr.postinst: reintroduce check for syslog's existence
- d/control: Transition to lua5.5 (LP #2155757)
* Dropped:
- d/t/{utils,py-frr-reload,bgpf-snmp-rpki,zebra-lo}: show logs in case of
failure
[In 10.5.1-2]
- d/p/CVE-2025-61xxx-2.patch,
d/p/CVE-2025-61xxx-3.patch,
d/p/CVE-2025-61xxx-4.patch,
d/p/CVE-2026-28532.patch,
d/p/CVE-2026-37457.patch,
d/p/CVE-2026-37458.patch,
d/p/CVE-2026-37459.patch,
d/p/CVE-2026-5107.patch: all included upstream
frr (10.7.0-1) sid; urgency=medium
* Merging upstream version 10.7.0.
frr (10.6.1-3) sid; urgency=medium
* Updating to debhelper 14.
* Adding frr-dev for out-of-tree plugins, based on patch from Robin
Jarry <[email protected]> (Closes: #1141729).
frr (10.6.1-2) sid; urgency=medium
* Removing manual user and group handling to systemd-sysusers (Closes:
#1138689).
frr (10.6.1-1) sid; urgency=medium
* Updating to standards version 4.7.4.
* Merging upstream version 10.6.1.
frr (10.6.0-2) sid; urgency=medium
* Adding note about CVE-2026-5107 to 10.6.0-1 changelog entries (Closes:
#1132329).
frr (10.6.0-1) experimental; urgency=medium
* Merging upstream version 10.6.0:
- improve packet parsing for EVPN and ENCAP/VNC [CVE-2026-5107]
(Closes: #1132329).
* Removing CVE-2025-61xxx patches, included upstream.
frr (10.5.3-1) sid; urgency=medium
* Merging upstream version 10.5.3.
frr (10.5.2-1) sid; urgency=medium
* Correcting wrong cherry-pick attribution in previous changelog, thanks
to Andreas Hasenack <[email protected]> for reporting it.
* Merging upstream version 10.5.2.
frr (10.5.1-3) sid; urgency=medium
* Adding patches from upstream to fix various NULL pointer dereferencing
in ospfd, thanks to Marc Deslauriers <[email protected]>
for cherry-picking them [CVE-2025-61099 CVE-2025-61100 CVE-2025-61101
CVE-2025-61102 CVE-2025-61103 CVE-2025-61104 CVE-2025-61105
CVE-2025-61106 CVE-2025-61107] (Closes: #1119292).
frr (10.5.1-2) sid; urgency=medium
* Adding patch from Andreas Hasenack <[email protected]> to
make autopkgtests show extra logs when there is a test failure
(Closes: #1127636).
* Harmonize indenting in autopkgtests.
-- Andreas Hasenack <[email protected]> Fri, 21 Aug 2026
09:41:46 -0300
** Changed in: frr (Ubuntu)
Status: Fix Committed => Fix Released
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61099
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61100
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61101
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61102
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61103
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61104
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61105
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61106
** CVE added: https://cve.org/CVERecord?id=CVE-2025-61107
** CVE added: https://cve.org/CVERecord?id=CVE-2026-28532
** CVE added: https://cve.org/CVERecord?id=CVE-2026-37457
** CVE added: https://cve.org/CVERecord?id=CVE-2026-37458
** CVE added: https://cve.org/CVERecord?id=CVE-2026-37459
** CVE added: https://cve.org/CVERecord?id=CVE-2026-5107
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2153190
Title:
Merge frr from Debian for stonking cycle
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/frr/+bug/2153190/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs