Merge version 6.0.1-1+rpi1+deb13u1 and 6.0.1-1+deb13u2 to produce 6.0.1-1+rpi1+deb13u2 trixie-staging archive/raspbian/6.0.1-1+rpi1+deb13u2 raspbian/6.0.1-1+rpi1+deb13u2
authorRaspbian automatic forward porter <root@raspbian.org>
Mon, 14 Sep 2026 01:46:17 +0000 (02:46 +0100)
committerRaspbian automatic forward porter <root@raspbian.org>
Mon, 14 Sep 2026 01:46:17 +0000 (02:46 +0100)
1  2 
debian/changelog
debian/patches/series

index b1b5649afec7de6ef5844866b80209c461b9f79c,164b1d203aeea99a4b782cb698baf065e46d312d..785d1639081da263d11ef5f5b1dda7f6c6f368b0
@@@ -1,9 -1,12 +1,19 @@@
- kamailio (6.0.1-1+rpi1+deb13u1) trixie-staging; urgency=medium
++kamailio (6.0.1-1+rpi1+deb13u2) trixie-staging; urgency=medium
 +
 +  [changes brought forward from 5.5.3-2+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Tue, 15 Feb 2022 05:45:40 +0000]
 +  * Remove supirious dash before CC_OPT
 +
-  -- Raspbian forward porter <root@raspbian.org>  Sat, 13 Sep 2025 21:56:32 +0000
++ -- Raspbian forward porter <root@raspbian.org>  Mon, 14 Sep 2026 01:46:17 +0000
++
+ kamailio (6.0.1-1+deb13u2) trixie-security; urgency=medium
+   * CVE-2026-39863 fix
+   * CVE-2026-39864 fix
+   * CVE-2026-52022 fix
+   * CVE-2026-52023 fix
+   * CVE-2026-82608 fix
+  -- Victor Seva <vseva@debian.org>  Tue, 08 Sep 2026 23:48:12 +0200
  
  kamailio (6.0.1-1+deb13u1) trixie; urgency=medium
  
index 0dc3cd2029b229f1d52d1cff3730dda6b09da1e8,d0e4faf2291658f8c193884960d9038e2978cf5f..c2fd3389aaf2fcec44c74dfda603ffb06caa09bd
@@@ -4,4 -3,31 +3,32 @@@ no_INSTALL_file.patc
  fix_export.patch
  stop-setting-march-on-arm.patch
  Check-only-major-OpenSSL-version.patch
+ # CVE-2026-39863
+ upstream/core-tcp-read-check-coontent-lenght-for-max-int-limi.patch
+ # CVE-2026-39864
+ upstream/auth-propagate-auth-header-via-pv_authenticate.patch
+ upstream/auth-init-variable.patch
+ upstream/auth_db-init-variable-and-set-the-result-header-late.patch
+ upstream/auth-add-defines-for-authenticate-flags.patch
+ upstream/auth-use-AUTH_FLAG_NOINVNC-flag.patch
+ # CVE-2026-52022
+ upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free.patch
+ upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free-ta.patch
+ upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free-ta3.patch
+ upstream/ims_ipsec_pcscf-free-previous-sec-agree-value-at-pro.patch
+ # CVE-2026-52023
+ upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre.patch
+ upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre2.patch
+ upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre3.patch
+ upstream/ims_registrar_pcscf-free-previous-sec-agree-value-at.patch
+ # CVE-2026-82608
+ upstream/ims_auth-check-len-before-get_4bytes.patch
+ upstream/ims_charging-check-len-before-get_4bytes.patch
+ upstream/ims_icscf-check-len-before-get_4bytes.patch
+ upstream/ims_ocs-Free-after-copying-the-values.patch
+ upstream/ims_ocs-check-len-before-get_4bytes.patch
+ upstream/ims_qos-check-len-before-get_4bytes.patch
+ upstream/ims_qos_npn-check-len-before-get_4bytes.patch
+ upstream/ims_registrar_scscf-check-len-before-get_4bytes.patch
 +remove-supirious-dash.patch