FTP master
This month I accepted 386 and rejected 39 packages. The overall number of packages that got accepted was 386.
I also added lots of +moreinfo tags to some RM bugs. Is it that hard to check the reverse dependencies on your own?
Debian LTS
This was my hundred-eighteenth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.
During my allocated time I uploaded:
- [DLA 3781-1] libgd2 security update for three CVEs to fix out-of-bounds reads or NULL pointer derefence
- [DLA 3784-1] libcaca security update for two CVEs to fix heap buffer overflows
- [DLA 3805-1] qtbase-opensource-src security update for seven CVEs to fix buffer overflows, infinite loops or application crashs due to processing of crafted input files. When trying to compile the fixed version, I got an error that there is no .compare() for QByteArray available. Yes, indeed, QByteArray::compare, which was used in a patch, was introduced only in Qt 6.0. So I had to backport that to Buster as well. It is astonishing that such a basic function was not needed before.
- [#1070153] bookworm-pu: qtbase-opensource-src/5.15.8+dfsg-11+deb12u2 to fix two CVEs
- [#1070154] bullseye-pu: qtbase-opensource-src/5.15.2+dfsg-9+deb11u1 to fix ten CVEs
- [#1064550] uploaded libjwt
- [#1067544] uploaded libmicrohttpd
- [ELA-1069-1]libgd2 security update for three CVEs to fix out-of-bounds reads or NULL pointer derefence in Jessie and Stretch
- [ELA-1070-1]libcaca security update for two CVEs to fix heap buffer overflows in Jessie and Stretch
- [ELA-1083-1]qtbase-opensource-src security update for five CVEs to fix buffer overflows, infinite loops or application crashs due to processing of crafted input files in Stretch
- … mailio a cross platform C++ library for email support
- … pksc11-proxy a proxy for the PKCS11-library
I also continued to work on tiff and last but not least did a week of FD and attended the monthly LTS/ELTS meeting.
Debian ELTS
This month was the sixty-ninth ELTS month. During my allocated time I uploaded:
I also continued to work on an update for tiff in Jessie and Stretch, did a week of FD and attended the LTS/ELTS meeting.
Debian Printing
This month I uploaded new upstream or bugfix versions of:
In preparation for cups3 I introduced a new package:
This work is generously funded by Freexian!
Debian Astro
This month I uploaded a new upstream or bugfix version of:
Debian IoT
This month I uploaded new upstream or bugfix versions of:
Debian Mobcom
This month I uploaded new upstream or bugfix versions of:
I have done these uploads in preparation for my GSoC student, who will be officially announced in May.
misc
I am sorry for people still using 32bit computers, but from my point of view these are dying architectures. So if there are any problems with builds on those architectures, I no longer try to fix them but file RM bugs. Patches are welcome, but I am no longer willing to spend any time for this.
This month I uploaded new upstream or bugfix versions of:
This month I even found some time to introduce new packages: