Merge version 16.2.15+ds-0+deb12u1+rpi1 and 16.2.15+ds-0+deb12u2 to produce 16.2... bookworm-staging archive/raspbian/16.2.15+ds-0+deb12u2+rpi1 raspbian/16.2.15+ds-0+deb12u2+rpi1
authorRaspbian automatic forward porter <root@raspbian.org>
Fri, 5 Jun 2026 03:00:24 +0000 (04:00 +0100)
committerRaspbian automatic forward porter <root@raspbian.org>
Fri, 5 Jun 2026 03:00:24 +0000 (04:00 +0100)
1  2 
debian/changelog
debian/patches/series

index 80412a2cae9b8d04acb7e3632acc1c77c70189a9,bd3485cedac649f7eb1ef8ea270c80a7b4640192..3f21b91415ac5c6272b6b45b5c41be00c7ad7dce
@@@ -1,15 -1,15 +1,28 @@@
- ceph (16.2.15+ds-0+deb12u1+rpi1) bookworm-staging; urgency=medium
++ceph (16.2.15+ds-0+deb12u2+rpi1) bookworm-staging; urgency=medium
 +
 +  [changes brought forward from 10.2.5-7.2+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Sun, 30 Jul 2017 09:48:17 +0000]
 +  * Add Raspbian to lists of "debian-like" distros.
 +    + Hopefully this will fix site-packages vs dist-packages
 +      build failure in Raspbian.
 + 
 +  [changes introduced in 14.2.5-3+rpi1 by Peter Michael Green]
 +  * Remove problematic gitattributes files.
 +  * Disable neon on armhf too.
 +
-  -- Raspbian forward porter <root@raspbian.org>  Mon, 09 Dec 2024 22:34:51 +0000
++ -- Raspbian forward porter <root@raspbian.org>  Fri, 05 Jun 2026 03:00:23 +0000
++
+ ceph (16.2.15+ds-0+deb12u2) bookworm-security; urgency=high
+   * Non-maintainer upload by the Security Team.
+   * mgr/alerts: enforce ssl context to SMTP_SSL (CVE-2024-31884)
+     (Closes: #1126573)
+   * Check if `HTTP_X_AMZ_COPY_SOURCE` header is empty (CVE-2024-47866)
+     (Closes: #1120797)
+   * client: disallow unprivileged users to escalate root privileges
+     (CVE-2025-52555) (Closes: #1108410)
+   * client: prohibit unprivileged users from setting sgid/suid bits
+  -- Salvatore Bonaccorso <carnil@debian.org>  Sat, 16 May 2026 14:52:24 +0200
  
  ceph (16.2.15+ds-0+deb12u1) bookworm-security; urgency=medium
  
index 416fa61b08cd4179e524514307fe26ce6e66a3aa,4ae07fe52907d4fd9cc5b939cb740cbe322b64b2..be9f6b47ba2cc820d312f37a9cb1e5096f0066a3
@@@ -18,5 -21,7 +18,9 @@@ Fix-build-with-fmt-8-9.patc
  fix-CheckCxxAtomic-riscv64.patch
  CVE-2022-3854_1_rgw_Guard_against_malformed_bucket_URLs.patch
  CVE-2024-48916.patch
+ mgr-alerts-enforce-ssl-context-to-SMTP_SSL.patch
+ Check-if-HTTP_X_AMZ_COPY_SOURCE-header-is-empty.patch
+ client-disallow-unprivileged-users-to-escalate-root-.patch
+ client-prohibit-unprivileged-users-from-setting-sgid.patch
 +detect-raspbian.diff
 +remove-problematic-gitattributes-files.patch