New Debian util-linux 2.38.1-5+deb12u3 fixes: This update addresses the following issue: 2.38.1-5+deb12u3 (Thu, 21 Nov 2024 21:01:54 +0100) * Fixup upstream patches from 2.38.1-5+deb12u2 so gbp-pq can apply them * Use upstream's new --disable-makeinstall-tty-setgid. This fixes our wider mitigation for CVE-2024-28085.
--- mirror/ftp/pool/main/u/util-linux/util-linux_2.38.1-5+deb12u2.dsc +++ apt/ucs_5.2-0-errata5.2-0/source/util-linux_2.38.1-5+deb12u3.dsc @@ -1,3 +1,9 @@ +2.38.1-5+deb12u3 [Thu, 21 Nov 2024 21:01:54 +0100] Chris Hofstaedtler <zeha@debian.org>: + + * Fixup upstream patches from 2.38.1-5+deb12u2 so gbp-pq can apply them + * Use upstream's new --disable-makeinstall-tty-setgid. + This fixes our wider mitigation for CVE-2024-28085. + 2.38.1-5+deb12u2 [Fri, 18 Oct 2024 12:56:02 +0000] Emanuele Rocca <ema@debian.org>: * Add the following upstream patches to identify new Arm cores: <http://piuparts.knut.univention.de/5.2-0/#3499846539011675827>
OK: bug OK: yaml OK: announce_errata OK: patch OK: piuparts [5.2-0] bf075616be Bug #57929: util-linux 2.38.1-5+deb12u3 doc/errata/staging/util-linux.yaml | 13 +++++++++++++ 1 file changed, 13 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.2x21>