[Git][security-tracker-team/security-tracker][master] First pass of bookworm-pu updates for point release

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 14 06:14:46 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
52a59fb8 by Salvatore Bonaccorso at 2026-05-14T07:14:20+02:00
First pass of bookworm-pu updates for point release

Move not uploaded and not accepted uploads to the end of list for easier
merging and second review.

- - - - -


1 changed file:

- data/next-oldstable-point-update.txt


Changes:

=====================================
data/next-oldstable-point-update.txt
=====================================
@@ -1,13 +1,3 @@
-CVE-2023-28755
-	[bookworm] - ruby3.1 3.1.7-1~deb12u1
-CVE-2023-28756
-	[bookworm] - ruby3.1 3.1.7-1~deb12u1
-CVE-2025-27219
-	[bookworm] - ruby3.1 3.1.7-1~deb12u1
-CVE-2025-27220
-	[bookworm] - ruby3.1 3.1.7-1~deb12u1
-CVE-2025-27221
-	[bookworm] - ruby3.1 3.1.7-1~deb12u1
 CVE-2023-50262
 	[bookworm] - php-dompdf 2.0.3+dfsg-1+deb12u1
 CVE-2025-67269
@@ -28,8 +18,6 @@ CVE-2023-47466
 	[bookworm] - taglib 1.13-2+deb12u1
 CVE-2022-48620
 	[bookworm] - libuev 2.4.0-1.1+deb12u1
-CVE-2026-24765
-	[bookworm] - phpunit 9.6.7-1+deb12u1
 CVE-2025-66034
 	[bookworm] - fonttools 4.38.0-1+deb12u1
 CVE-2023-45139
@@ -68,8 +56,6 @@ CVE-2026-1489
 	[bookworm] - glib2.0 2.74.6-2+deb12u9
 CVE-2023-38199
 	[bookworm] - modsecurity-crs 3.3.4-1+deb12u2
-CVE-2026-25727
-	[bookworm] - rust-time 0.3.9-1+deb12u1
 CVE-2025-68158
 	[bookworm] - python-authlib 1.2.0-1+deb12u1
 CVE-2025-62706
@@ -102,8 +88,6 @@ CVE-2024-11612
 	[bookworm] - 7zip 22.01+really25.01+dfsg-0+deb12u1
 CVE-2025-53817
 	[bookworm] - 7zip 22.01+really25.01+dfsg-0+deb12u1
-CVE-2021-37746
-	[bookworm] - sylpheed 3.8.0~beta1-1+deb12u1
 CVE-2026-33721
 	[bookworm] - mapserver 8.0.0-3+deb12u1
 CVE-2025-59431
@@ -234,10 +218,6 @@ CVE-2026-40199
 	[bookworm] - libnet-cidr-lite-perl 0.22-3~deb12u1
 CVE-2026-35535
 	[bookworm] - sudo 1.9.13p3-1+deb12u4
-CVE-2026-33551
-	[bookworm] - keystone 2:22.0.2-0+deb12u2
-CVE-2026-34956
-	[bookworm] - openvswitch 3.1.0-2+deb12u2
 CVE-2026-33999
 	[bookworm] - xorg-server 2:21.1.7-3+deb12u12
 CVE-2026-33940
@@ -360,6 +340,42 @@ CVE-2025-2588
 	[bookworm] - augeas 1.14.0-1+deb12u1
 CVE-2025-69209
 	[bookworm] - arduino-core-avr 1.8.7+dfsg-1~deb12u1
+CVE-2023-44483
+	[bookworm] - libxml-security-java 2.1.7-3+deb12u1
+CVE-2025-34297
+	[bookworm] - kissfft 131.1.0-4.1~deb12u1
+CVE-2026-41445
+	[bookworm] - kissfft 131.1.0-4.1~deb12u1
+CVE-2025-13462
+	[bookworm] - python3.11 3.11.2-6+deb12u8
+CVE-2026-2297
+	[bookworm] - python3.11 3.11.2-6+deb12u8
+CVE-2026-4224
+	[bookworm] - python3.11 3.11.2-6+deb12u8
+CVE-2026-4519
+	[bookworm] - python3.11 3.11.2-6+deb12u8
+CVE-2026-6100
+	[bookworm] - python3.11 3.11.2-6+deb12u8
+CVE-2023-28755
+	[bookworm] - ruby3.1 3.1.7-1~deb12u1
+CVE-2023-28756
+	[bookworm] - ruby3.1 3.1.7-1~deb12u1
+CVE-2025-27219
+	[bookworm] - ruby3.1 3.1.7-1~deb12u1
+CVE-2025-27220
+	[bookworm] - ruby3.1 3.1.7-1~deb12u1
+CVE-2025-27221
+	[bookworm] - ruby3.1 3.1.7-1~deb12u1
+CVE-2026-24765
+	[bookworm] - phpunit 9.6.7-1+deb12u1
+CVE-2026-25727
+	[bookworm] - rust-time 0.3.9-1+deb12u1
+CVE-2021-37746
+	[bookworm] - sylpheed 3.8.0~beta1-1+deb12u1
+CVE-2026-33551
+	[bookworm] - keystone 2:22.0.2-0+deb12u2
+CVE-2026-34956
+	[bookworm] - openvswitch 3.1.0-2+deb12u2
 CVE-2026-42510
 	[bookworm] - ironic 1:21.1.0-3+deb12u1
 CVE-2025-44021
@@ -384,19 +400,3 @@ CVE-2026-5773
 	[bookworm] - curl 7.88.1-10+deb12u15
 CVE-2026-7168
 	[bookworm] - curl 7.88.1-10+deb12u15
-CVE-2023-44483
-	[bookworm] - libxml-security-java 2.1.7-3+deb12u1
-CVE-2025-34297
-	[bookworm] - kissfft 131.1.0-4.1~deb12u1
-CVE-2026-41445
-	[bookworm] - kissfft 131.1.0-4.1~deb12u1
-CVE-2025-13462
-	[bookworm] - python3.11 3.11.2-6+deb12u8
-CVE-2026-2297
-	[bookworm] - python3.11 3.11.2-6+deb12u8
-CVE-2026-4224
-	[bookworm] - python3.11 3.11.2-6+deb12u8
-CVE-2026-4519
-	[bookworm] - python3.11 3.11.2-6+deb12u8
-CVE-2026-6100
-	[bookworm] - python3.11 3.11.2-6+deb12u8



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/52a59fb84eeaf35f7dfdea7f049cc57f0474805a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/52a59fb84eeaf35f7dfdea7f049cc57f0474805a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260514/e87edc9b/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list