[pkg-gnupg-maint] Bug#1124465: bookworm-pu: package gnupg2/2.2.40-1.1+deb12u2

Andreas Metzler ametzler at bebt.de
Thu Jan 1 15:12:19 GMT 2026


Package: release.debian.org
Severity: normal
Tags: bookworm
X-Debbugs-Cc: gnupg2 at packages.debian.org, team at security.debian.org, Daniel Kahn Gillmor <dkg at fifthhorseman.net>
Control: affects -1 + src:gnupg2
User: release.debian.org at packages.debian.org
Usertags: pu

Hello,

this is the pendant to #1124429 for bookworm.

We would like to fix CVE-2025-68973 and three other issues from
gnupg(dot)fail in the January oldstable update. team at security
would prefer the fix to go via stable updates because 
| [...] the key benefit to have gnupg2 exposed in public via the
| proposed updates suites as soon accepted.

[ Checklist ]
  [x] *all* changes are documented in the d/changelog
  [x] I reviewed all changes and I approve them
  [x] attach debdiff against the package in (old)stable
  [x] the issue is verified as fixed in unstable
cu Andreas
-------------- next part --------------
A non-text attachment was scrubbed...
Name: gnupg2_2.2.40-1.1+deb12u2.deb.diff.gz
Type: application/gzip
Size: 6951 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-gnupg-maint/attachments/20260101/eb1acf62/attachment.gz>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-gnupg-maint/attachments/20260101/eb1acf62/attachment.sig>


More information about the pkg-gnupg-maint mailing list