{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreiesxi6rotskjt3wowt5e73df5evha3siwokrbohum4kvfl72uky24",
"uri": "at://did:plc:46ti67tc37qcmwp2vaynk6fq/app.bsky.feed.post/3mgfyyr4f32z2"
},
"path": "/2026/03/my-debian-activities-in-february-2026/",
"publishedAt": "2026-03-06T19:05:44.163Z",
"site": "http://blog.alteholz.eu",
"tags": [
"[DLA 4474-1",
"[DLA 4477-1",
"[DLA 4483-1",
"[DLA 4487-1",
"[DLA 4489-1",
"ipp-usb",
"brlaser",
"gutenprint",
"Freexian",
"Fre(i)e Software GmbH",
"c-munipack",
"libasi",
"libdfu-ahp",
"libfishcamp",
"libinovasdk",
"libmicam",
"siril",
"pyicloud",
"libsmpp34",
"nuspell"
],
"textContent": "### **Debian LTS/ELTS**\n\nThis was my hundred-fortieth month that I did some work for the Debian LTS initiative, started by Raphael Hertzog at Freexian.\n\nDuring my allocated time I uploaded or worked on:\n\n * [DLA 4474-1] rlottie security update to fix three CVEs related to boundary checks.\n * [DLA 4477-1] munge security update to fix one CVE related to a buffer overflow.\n * [DLA 4483-1] gimp security update to fix four CVEs related to arbitrary code execution.\n * [DLA 4487-1] gegl security update to fix two CVEs related to heap-based buffer overflow.\n * [DLA 4489-1] libvpx security update to fix one CVE related to a buffer overflow.\n * [ELA-1649-1] gimp security update to fix three CVEs in Buster and Stretch related to arbitrary code execution.\n * [ELA-1650-1] gegl security update to fix two CVEs in Buster and Stretch related to heap-based buffer overflow.\n\n\n\nSome CVEs could be marked as _not-affected_ for one or all LTS/ELTS-releases. I also worked on package _evolution-data-server_ and attended the monthly LTS/ELTS meeting.\n\n### **Debian Printing**\n\nThis month I uploaded a new upstream versions:\n\n * … ipp-usb to unstable.\n * … brlaser to unstable.\n * … gutenprint to unstable.\n\n\n\n**This work is generously funded byFreexian!**\n\n### **Debian Lomiri**\n\nThis month I continued to worked on unifying packaging on Debian and Ubuntu. This makes it easier to work on those packages independent of the used platform.\n\n**This work is generously funded byFre(i)e Software GmbH!**\n\n### **Debian Astro**\n\nThis month I uploaded a new upstream version or a bugfix version of:\n\n * … c-munipack to unstable. This package now contains a version without GTK support. Upstream is working on a port to GTK3 but seems to need some more time to finish this.\n * … libasi to unstable.\n * … libdfu-ahp to unstable.\n * … libfishcamp to unstable.\n * … libinovasdk to unstable.\n * … libmicam to unstable.\n * … siril to unstable (sponsored upload).\n\n\n\n### **Debian IoT**\n\nThis month I uploaded a new upstream version or a bugfix version of:\n\n * … pyicloud to unstable.\n\n\n\nUnfortunately development of _openoverlayrouter_ finally stopped, so I had to remove this package from the archive.\n\n### **Debian Mobcom**\n\nThis month I uploaded a new upstream version or a bugfix version of:\n\n * … libsmpp34 to unstable.\n\n\n\n### **misc**\n\nThis month I uploaded a new upstream version or a bugfix version of:\n\n * … nuspell to unstable.\n\n\n\nI also sponsored the upload of some Matomo dependencies. Thanks a lot to William for preparing the packages",
"title": "Thorsten Alteholz: My Debian Activities in February 2026",
"updatedAt": "2026-03-06T18:27:54.000Z"
}