From: Raspbian automatic forward porter Date: Mon, 14 Sep 2026 01:46:17 +0000 (+0100) Subject: Merge version 6.0.1-1+rpi1+deb13u1 and 6.0.1-1+deb13u2 to produce 6.0.1-1+rpi1+deb13u2 X-Git-Tag: archive/raspbian/6.0.1-1+rpi1+deb13u2^0 X-Git-Url: https://dgit.raspbian.org/%22http://www.example.com/cgi/success//%22http:/www.example.com/cgi/success/?a=commitdiff_plain;h=072835264e2bdd44ace295ac2cf00e3b21527442;p=kamailio.git Merge version 6.0.1-1+rpi1+deb13u1 and 6.0.1-1+deb13u2 to produce 6.0.1-1+rpi1+deb13u2 --- 072835264e2bdd44ace295ac2cf00e3b21527442 diff --cc debian/changelog index b1b5649a,164b1d20..785d1639 --- a/debian/changelog +++ b/debian/changelog @@@ -1,9 -1,12 +1,19 @@@ - kamailio (6.0.1-1+rpi1+deb13u1) trixie-staging; urgency=medium ++kamailio (6.0.1-1+rpi1+deb13u2) trixie-staging; urgency=medium + + [changes brought forward from 5.5.3-2+rpi1 by Peter Michael Green at Tue, 15 Feb 2022 05:45:40 +0000] + * Remove supirious dash before CC_OPT + - -- Raspbian forward porter Sat, 13 Sep 2025 21:56:32 +0000 ++ -- Raspbian forward porter Mon, 14 Sep 2026 01:46:17 +0000 ++ + kamailio (6.0.1-1+deb13u2) trixie-security; urgency=medium + + * CVE-2026-39863 fix + * CVE-2026-39864 fix + * CVE-2026-52022 fix + * CVE-2026-52023 fix + * CVE-2026-82608 fix + + -- Victor Seva Tue, 08 Sep 2026 23:48:12 +0200 kamailio (6.0.1-1+deb13u1) trixie; urgency=medium diff --cc debian/patches/series index 0dc3cd20,d0e4faf2..c2fd3389 --- a/debian/patches/series +++ b/debian/patches/series @@@ -4,4 -3,31 +3,32 @@@ no_INSTALL_file.patc fix_export.patch stop-setting-march-on-arm.patch Check-only-major-OpenSSL-version.patch + # CVE-2026-39863 + upstream/core-tcp-read-check-coontent-lenght-for-max-int-limi.patch + # CVE-2026-39864 + upstream/auth-propagate-auth-header-via-pv_authenticate.patch + upstream/auth-init-variable.patch + upstream/auth_db-init-variable-and-set-the-result-header-late.patch + upstream/auth-add-defines-for-authenticate-flags.patch + upstream/auth-use-AUTH_FLAG_NOINVNC-flag.patch + # CVE-2026-52022 + upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free.patch + upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free-ta.patch + upstream/ims_ipsec_pcscf-Fix-problems-with-double-mem-free-ta3.patch + upstream/ims_ipsec_pcscf-free-previous-sec-agree-value-at-pro.patch + # CVE-2026-52023 + upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre.patch + upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre2.patch + upstream/ims_registrar_pcscf-Fix-problems-with-double-mem-fre3.patch + upstream/ims_registrar_pcscf-free-previous-sec-agree-value-at.patch + # CVE-2026-82608 + upstream/ims_auth-check-len-before-get_4bytes.patch + upstream/ims_charging-check-len-before-get_4bytes.patch + upstream/ims_icscf-check-len-before-get_4bytes.patch + upstream/ims_ocs-Free-after-copying-the-values.patch + upstream/ims_ocs-check-len-before-get_4bytes.patch + upstream/ims_qos-check-len-before-get_4bytes.patch + upstream/ims_qos_npn-check-len-before-get_4bytes.patch + upstream/ims_registrar_scscf-check-len-before-get_4bytes.patch + +remove-supirious-dash.patch