So we had a problem on the mirrors for #debian #bookworm - appears the wrong stable #openpgp key got used to sign it. The one from #trixie was in use.

The "only" implication here is people who pin their debian sources to specific keys, their #apt will complain. That's annoying, which is why we fixed it just now, resigning using the correct key.

Mirrors already got triggered, updates should be visible soon.

In case anyone wants to run off yelling security problem: Nah. Stuff is (and was) still signed by two keys from us #ftpmaster - and it is the same people handling the stable keys for bookworm and trixie. So only the wrong one used, nothing more.

My Debian Activities in July 2025
Debian LTS

This was my hundred-thirty-third month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on:

[DLA 4255-1] audiofile security update of two CVEs related to an integer overflow an
http://blog.alteholz.eu/2025/08/my-debian-activities-in-july-2025/
#Uncategorized #Debian #debianastro #debianprinting #ELTS #en #ftpmaster #LTS #package #planetdebian #rfp

My Debian Activities in July 2025

Debian LTS This was my hundred-thirty-third month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on: [DLA 4255-1] audiofile security update of two CVEs related to an integer overflow and a memory leak.[DLA 4256-1] libetpan security update to fix one CVE related to prevent a null pointer derefer ...

blog.alteholz.eu

And now indexes for the new stable suite #debian13 #trixie are getting regenerated.

To get to this point #Debian #linux #ftpmaster Ansgar already had to run 120 commands.

My Debian Activities in June 2025
Debian LTS

This was my hundred-thirty-second month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on:

[DLA 4221-1] libblockdev security update of one embargoed CVE related to obtaining
http://blog.alteholz.eu/2025/07/my-debian-activities-in-june-2025/
#Uncategorized #Debian #debianastro #debianprinting #ELTS #en #ftpmaster #LTS #package #planetdebian #rfp

My Debian Activities in June 2025

Debian LTS This was my hundred-thirty-second month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on: [DLA 4221-1] libblockdev security update of one embargoed CVE related to obtaining full root privileges.[hardening udisks2] uploaded new version of udisks2 with a hardening patch related to DLA ...

blog.alteholz.eu

My Debian Activities in May 2025
Debian LTS

This was my hundred-thirty-first month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on:

[DLA 4168-1] openafs security update of three CVEs related to theft of credentials, crashes o
http://blog.alteholz.eu/2025/06/my-debian-activities-in-may-2025/
#Uncategorized #Debian #debianastro #debianmobcom #ELTS #en #ftpmaster #LTS #package #planetdebian

My Debian Activities in May 2025

Debian LTS This was my hundred-thirty-first month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on: [DLA 4168-1] openafs security update of three CVEs related to theft of credentials, crashes or buffer overflows.[DLA 4196-1] kmail-account-wizard security update to fix one CVE related to a man- ...

blog.alteholz.eu

My Debian Activities in April 2025
Debian LTS

This was my hundred-thirtieth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on:

[DLA 4145-1] expat security update of one CVE related to a crash within XML_ResumeParser() because XML_
http://blog.alteholz.eu/2025/05/my-debian-activities-in-april-2025/
#Uncategorized #Debian #debianprinting #ELTS #en #ftpmaster #LTS #package #planetdebian

My Debian Activities in April 2025

Debian LTS This was my hundred-thirtieth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian. During my allocated time I uploaded or worked on: [DLA 4145-1] expat security update of one CVE related to a crash within XML_ResumeParser() because XML_StopParser() can stop/suspend an unstarted parser.[DLA 4146-1] libxml2 security update to fix ...

blog.alteholz.eu

My Debian Activities in October 2024
FTP master

This month I accepted 398 and rejected 22 packages. The overall number of packages that got accepted was 441.

In case your RM bug is not closed within a month, you can assume that either the conversion of the subject of the bug email to the corresponding dak command di
http://blog.alteholz.eu/2024/11/my-debian-activities-in-october-2024/
#Uncategorized #Debian #debian-iot #debian-mobcom #ELTS #en #ftpmaster #LTS #package #planetdebian

My Debian Activities in October 2024

FTP master This month I accepted 398 and rejected 22 packages. The overall number of packages that got accepted was 441. In case your RM bug is not closed within a month, you can assume that either the conversion of the subject of the bug email to the corresponding dak command did not work or you still need to take care of reverse dependencies. The dak command related to your removal bu ...

blog.alteholz.eu

Uploaded #Plasma 6.2 to #Debian experimental !

It will take a couple of hours until our build farm builds all 63 source packages on our 9 release architectures and 2 port architectures where it currently builds.
http://deb.li/plasma6blds

(Thanks to #ftpmaster @debian for the quick review of the new binary packages.)

Buildd status for selected packages (experimental)

Appearently the archive output looks good. #FTPMaster is now going to integrate the Release Teams signature, which means the #Stable #Release #managers have taken #Bookworm as their own.

And the process continues, soon there will be a mirror push - but stay calm, it "only" goes to the CD people, so they can start their work, while other tasks still to do in the archives run in parallel.

#Debian #ReleasingDebianBookworm

#Debian #FTPMaster of the day: Ansgar. Already at work, renaming suites.

#ReleasingDebianBookworm