Bug#1104287: bookworm-pu: package poppler/22.12.0-2+deb12u1

Adrian Bunk bunk at debian.org
Mon Apr 28 21:11:44 BST 2025


On Mon, Apr 28, 2025 at 08:35:58PM +0200, Rene Engelhard wrote:
> [ CCing the inkscape maintainer, too ]
> 
> 
> Hi,

Hi Rene,

> Am 28.04.25 um 20:25 schrieb Adrian Bunk:
> > you missed the last line I've added there earlier today:
> >    Might cause regression: https://bugzilla.suse.com/show_bug.cgi?id=1241620#c3
> 
> Indeed I missed it. (Actually didn't look at the contents when I wrote the mail, just looked up the URL) [1]
> 
> 
> Unfortunately the links there don't work, but "version update" makes me wary, as applying a security patch is not really a "version update". Or it's just badly formulated.

I know as much as you know about that entry.

> TTBOMK inkscape didn't regress with https://tracker.debian.org/ews/1640383/accepted-poppler-25030-4-source-into-unstable/ (did it? at least no inkscape update since then)...
> 
> Poppler version updates break all the time, indeed.
> 
> 
> But maybe the inkscape/poppler combo in bookworm breaks, didn't try... Maybe the inkscape maintainer can help here.

And who knows how likely "Not sure there is any other problem" is.

I will not try to fix this CVE at this point in time, but this does not 
prevent other people from working on it if anyone disagrees.

> Regards,
> 
> 
> Rene

cu
Adrian




More information about the Pkg-freedesktop-maintainers mailing list