med-mastodon.com is one of the many independent Mastodon servers you can use to participate in the fediverse.
Medical community on Mastodon

Administered by:

Server stats:

343
active users

#debianLTS

1 post1 participant0 posts today
Freexian :debian:<p>Debian 13 “trixie” is now the new Debian stable!</p><p>It will be supported for the next 5 years by the Debian Security team (<a href="https://security-team.debian.org/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">security-team.debian.org/</span><span class="invisible"></span></a>) and Debian LTS (<a href="https://wiki.debian.org/LTS" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">wiki.debian.org/LTS</span><span class="invisible"></span></a>) team, with up to 10 years of support via Freexian’s Extended LTS (<a href="https://www.freexian.com/lts/extended/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/extended/</span><span class="invisible"></span></a>).</p><p>A big congratulations and thank you to everyone who made this release possible!</p><p><a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/debian13" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian13</span></a> <a href="https://hachyderm.io/tags/trixie" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>trixie</span></a> <a href="https://hachyderm.io/tags/debianlts" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianlts</span></a> <a href="https://hachyderm.io/tags/LongTermSupport" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LongTermSupport</span></a> <a href="https://hachyderm.io/tags/linuxsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linuxsecurity</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a></p>
Freexian :debian:<p>Debian LTS contributors released 46 Debian LTS Advisories about security updates for various packages in April 2025.</p><p>These include critical security bug fixes for jetty9, zabbix and glibc and more. Also several LTS contributors prepared packages for the recent point release of current stable Debian 12, with many prepared in conjunction with related LTS updates of the same packages.</p><p>Read more about this in our monthly report for April here: <a href="https://www.freexian.com/blog/debian-lts-report-2025-04/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">freexian.com/blog/debian-lts-r</span><span class="invisible">eport-2025-04/</span></a></p><p>This work is funded by Freexian's Debian LTS offering.</p><p>Your organization too can sponsor the Debian LTS (<a href="https://www.freexian.com/lts/debian/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/debian/</span><span class="invisible"></span></a>) and join the esteemed list of sponsors in the monthly report.</p><p><a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/debianlts" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianlts</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a> <a href="https://hachyderm.io/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://hachyderm.io/tags/glibc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>glibc</span></a></p>
Freexian :debian:<p>31 Debian LTS Advisories were released in March about security updates for various packages including but not limited to linux-6.1, firefox-esr, intel-microcode and vim.</p><p>Read more about work done by Debian LTS contributors in our monthly report for March at <a href="https://www.freexian.com/blog/debian-lts-report-2025-03/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">freexian.com/blog/debian-lts-r</span><span class="invisible">eport-2025-03/</span></a></p><p>This work is funded by Freexian's Debian LTS offering.</p><p>Your organization too can sponsor the Debian LTS (<a href="https://www.freexian.com/lts/debian/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/debian/</span><span class="invisible"></span></a>) and join the esteemed list of sponsors in the monthly report.</p><p><a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/debianlts" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianlts</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a> <a href="https://hachyderm.io/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://hachyderm.io/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://hachyderm.io/tags/vim" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vim</span></a></p>
Freexian :debian:<p>Did you know that the Debian LTS team released 33 Debian LTS Advisories regarding security updates during January 2025?</p><p>Read the work done by Debian LTS contributors in our monthly report, now available at <a href="https://www.freexian.com/blog/debian-lts-report-2025-01/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">freexian.com/blog/debian-lts-r</span><span class="invisible">eport-2025-01/</span></a></p><p>This work is funded by Freexian's Debian LTS offering.</p><p>Your organization too can sponsor the Debian LTS (<a href="https://www.freexian.com/lts/debian/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/debian/</span><span class="invisible"></span></a>) and join the esteemed list of sponsors in the monthly report.</p><p><a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/debianlts" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianlts</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a> <a href="https://hachyderm.io/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a></p>
Freexian :debian:<p>The monthly report about the work done by Debian LTS contributors in December 2024 is available now - <a href="https://www.freexian.com/blog/debian-lts-report-2024-12/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">freexian.com/blog/debian-lts-r</span><span class="invisible">eport-2024-12/</span></a></p><p>This work is funded by Freexian's Debian LTS offering.</p><p>Sponsor the Debian LTS (<a href="https://www.freexian.com/lts/debian/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/debian/</span><span class="invisible"></span></a>) to join the esteemed list of sponsors in the monthly report.</p><p><a href="https://hachyderm.io/tags/debianLTS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianLTS</span></a> <a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a></p>
Freexian :debian:<p>Thanks to all the sponsors and different Debian Teams that have made Debian LTS possible.</p><p><a href="https://hachyderm.io/tags/debianLTS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianLTS</span></a> <a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a></p>
Freexian :debian:<p>When Debian LTS (<a href="https://wiki.debian.org/LTS" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">wiki.debian.org/LTS</span><span class="invisible"></span></a>) started in 2014 for Debian 6 "squeeze", <br>(<a href="https://web.archive.org/web/20240720200316/https://www.debian.org/News/2014/20140616" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">web.archive.org/web/2024072020</span><span class="invisible">0316/https://www.debian.org/News/2014/20140616</span></a>)<br>we didn't have any certainty about its future success.</p><p>Ten years later, we are happy to announce that more than 4000 security updates have been published under the LTS initiative.</p><p>More precisely, DLA 4000-1 (<a href="https://lists.debian.org/debian-lts-announce/2024/12/msg00022.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">lists.debian.org/debian-lts-an</span><span class="invisible">nounce/2024/12/msg00022.html</span></a>)<br>was released on 21st December 2024 by Guilhem Moulin to fix three CVEs in sqlparse.</p><p><a href="https://hachyderm.io/tags/debianLTS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianLTS</span></a> <a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a></p>
Freexian :debian:<p>The monthly report of the work done by Debian LTS contributors in November is now available at - <a href="https://www.freexian.com/blog/debian-lts-report-2024-11/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">freexian.com/blog/debian-lts-r</span><span class="invisible">eport-2024-11/</span></a> <br>This work is funded by Freexian's Debian LTS offering.</p><p>Your organization too can sponsor the Debian LTS (<a href="https://www.freexian.com/lts/debian/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">freexian.com/lts/debian/</span><span class="invisible"></span></a>) and join the esteemed list of sponsors in the monthly report.</p><p><a href="https://hachyderm.io/tags/debianLTS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debianLTS</span></a> <a href="https://hachyderm.io/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://hachyderm.io/tags/freexian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>freexian</span></a></p>
Continued thread

Temporary remediation

While we prepare updates for the different Debian releases, this is a list of actions that remediate the exposure to the vulnerabilities:
Remove cups from BrowseRemoteProtocols in /etc/cups/cups-browsed.conf or disable cups-browsed if possible
Block any incoming traffic to the 631 UDP port

Thanks to the Debian Security Team for their collaboration on addressing these issues!

You may be aware of the OpenPrinting CUPS vulnerabilities disclosed yesterday by Simone Margaritelli.

Unfortunately, this disclosure happened without the planned coordination between the reporter, the developers and the different distributions, without waiting for proper and tested patches to be available. As a result, vulnerable machines are currently exposed.

The Debian LTS team is working on preparing updates for the different Debian releases

Replied in thread

So, anyone who wants a Debian supplier can just jump on this and that's exactly what they get.

"Any contribution gives you the right to submit a list of packages that you rely on, and that should be prioritized in terms of security support."

"If your funding level is at least Bronze 1, Freexian will subscribe the person listed as technical contact to a private mailing list that all contributing companies can use to discuss their needs and share their experience."

"If your funding level is at least Silver 1, you can submit your queries and requests about Debian LTS in general and/or any security update in particular to us."

"If your funding level is Platinum, you can submit to us functional tests covering the set of packages that you care about, and we will run those tests on updated packages to detect undesired regressions"

#Freexian #DebianLts

@smxi @Di4na