[Debian-ha-maintainers] Bug#1102006: corosync: CVE-2025-30472

Salvatore Bonaccorso carnil at debian.org
Sat Jun 21 20:00:28 BST 2025


Hi Ferenc,

On Sat, Jun 21, 2025 at 12:13:31PM +0200, Ferenc Wágner wrote:
> Salvatore Bonaccorso <carnil at debian.org> writes:
> 
> > While I think this still holds and does not warrant a DSA, Moritz has
> > prepared and proposed an update fo the next bookworm point release.
> > But if it's not fixed in the upper suite it cannot be accepted in the
> > point release.
> >
> > Would you be up to prepare an upload an upload for unstable,
> > targetting trixie?
> 
> Hi folks,
> 
> I uploaded corosync_3.1.9-2 with the cherry-picked commit fixing the
> CVE.  Shall I also ask for an unblock to speed up testing migration?

Thanks for the upload!

I tlooks Jonathan already added a hint:

respighi:/srv/release.debian.org/britney/hints/jmw:
# 20250621
unblock corosync/3.1.9-2

Jonathan, thank you!

Regards,
Salvatore



More information about the Debian-ha-maintainers mailing list