• Bug#1084293: Bug#1105976: mariadb: CVE-2025-30722 CVE-2025-30693

    From =?UTF-8?B?T3R0byBLZWvDpGzDpGluZW4=?@21:1/5 to All on Mon May 26 05:30:01 2025
    MariaDB 11.10.13 is now out and ready for upload in MR!119.

    Should we make this a security upload or put into stable-updates?
    Does the security team have a preference?

    I am fine either way.

    I think the no-dsa marked CVEs can still be done in the 12.12 point
    release.

    What do you mean by "no-dsa"? Do you want to have 1:10.11.12-0+deb12u1
    a security upload to close #1105976 and #1100437 or should I upload it
    to proposed-updates and we wait for 12.12?

    Please make sure that the fixes land in unstable and can migrate to
    testing, as we are in special times for the freeze for trixie.

    The upload of future 11.8.x series is a separate and independent
    decision. This e-mail is about 1:10.11.12-0+deb12u1 specifically.

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Salvatore Bonaccorso@21:1/5 to All on Mon May 26 20:50:01 2025
    Hi,

    On Sun, May 25, 2025 at 08:24:53PM -0700, Otto Kekäläinen wrote:
    MariaDB 11.10.13 is now out and ready for upload in MR!119.

    Should we make this a security upload or put into stable-updates?
    Does the security team have a preference?

    I am fine either way.

    I think the no-dsa marked CVEs can still be done in the 12.12 point release.

    What do you mean by "no-dsa"? Do you want to have 1:10.11.12-0+deb12u1
    a security upload to close #1105976 and #1100437 or should I upload it
    to proposed-updates and we wait for 12.12?

    no-dsa means please fix it via the next point release.

    Please make sure that the fixes land in unstable and can migrate to testing, as we are in special times for the freeze for trixie.

    The upload of future 11.8.x series is a separate and independent
    decision. This e-mail is about 1:10.11.12-0+deb12u1 specifically.

    You still want to have the fixes in trixie, so to avoid as well
    regressions when updating from bookworm to trixie. Thus my comment.

    Thank you,

    Regards,
    Salvatore

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)