#1137728 linux-vulnerability-mitigation: fails to cleanly install, if manual mode is chosen

#1137728#5
Date:
2026-05-26 22:52:12 UTC
From:
To:
Hello there!

Firstoff, thanks for creating and maintaining this useful package.
Really appreciated.

I installed it on one box some versions ago and I decided to test it on other
boxes, as well.

However, I have just found that linux-vulnerability-mitigation/20260519.1-1
(currently in Debian unstable) fails to cleanly install, if I choose the
manual mode to select mitigations:

    # aptitude install linux-vulnerability-mitigation
    The following NEW packages will be installed:
      linux-vulnerability-mitigation
    [...]
    Preconfiguring packages ...
    find: ‘/usr/share/linux-vulnerability-mitigation/mitigations’: No such file or directory
    Selecting previously unselected package linux-vulnerability-mitigation.
    [...]

A debconf dialog appears and asks the user to choose a method to select
mitigations. If I choose "manual", the following happens:

    Usage: linux-vulnerability-mitigation install -m|--mitigation={MITIGATION|MITIGATION1,MITIGATION2,...|ALL}

    See linux-vulnerability-mitigation-install(1), linux-vulnerability-mitigation(1) and linux-vulnerability-mitigation(7) for more information.
    dpkg: error processing package linux-vulnerability-mitigation (--configure):
     old linux-vulnerability-mitigation package postinst maintainer script subprocess failed with exit status 1
    Processing triggers for man-db (2.13.1-1)…
    Errors were encountered while processing:
     linux-vulnerability-mitigation
    E: Sub-process /usr/bin/dpkg returned an error code (1)
    Setting up linux-vulnerability-mitigation (20260519.1-1)…
    Usage: linux-vulnerability-mitigation install -m|--mitigation={MITIGATION|MITIGATION1,MITIGATION2,...|ALL}

    See linux-vulnerability-mitigation-install(1), linux-vulnerability-mitigation(1) and linux-vulnerability-mitigation(7) for more information.
    dpkg: error processing package linux-vulnerability-mitigation (--configure):
     old linux-vulnerability-mitigation package postinst maintainer script subprocess failed with exit status 1
    Errors were encountered while processing:
     linux-vulnerability-mitigation


After purging the package, I tried to install it again, but this time I chose
"none".
The installation succeeded.
But, needless to say, there was no debconf dialog to manually select the
mitigations.
I could however manually install the mitigations I needed with:

  $ linux-vulnerability-mitigation check
  $ linux-vulnerability-mitigation status
  # linux-vulnerability-mitigation install -m CVE-2026-43494


Maybe I will stick to the "none" mode and manage mitigations with the
above commands.

But I think the "manual" mode should be fixed (or dropped entirely).

Please fix this bug.
Thanks for your time and dedication!

#1137728#12
Date:
2026-07-12 17:22:04 UTC
From:
To:
We believe that the bug you reported is fixed in the latest version of
linux-vulnerability-mitigation, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1137728@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Daniel Baumann <daniel@debian.org> (supplier of updated linux-vulnerability-mitigation package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)
Format: 1.8
Date: Sun, 12 Jul 2026 18:55:08 +0200
Source: linux-vulnerability-mitigation
Architecture: source
Version: 20260629-2
Distribution: sid
Urgency: medium
Maintainer: Daniel Baumann <daniel@debian.org>
Changed-By: Daniel Baumann <daniel@debian.org>
Closes: 1137728 1139678 1139708 1140684
Changes:
 linux-vulnerability-mitigation (20260629-2) sid; urgency=medium
 .
   * Adding updated Catalan debconf translations from Carles Pina i Estany
     <carles@pina.cat> (Closes: #1139678).
   * Adding updated German debconf translations from Helge Kreutzmann
     <debian@helgefjell.de> (Closes: #1139708).
   * Adding updated Dutch debconf translations from Frans Spiesschaert
     <Frans.Spiesschaert@yucom.be> (Closes: #1140684).
   * Don't fail on empty manual mitigations, thanks to Francesco Poli
     (wintermute) <invernomuto@paranoici.org> for reporting (Closes:
     #1137728).
Checksums-Sha1:
 ccc2710ef787b5667e3f7f40a3dd03346dff9e4e 1491 linux-vulnerability-mitigation_20260629-2.dsc
 2b60d589c7e5dd7a68c6686e26baa6b2f3f9662f 7260 linux-vulnerability-mitigation_20260629-2.debian.tar.xz
 f73083212be494ee51da4271fcd6b7555f9422c9 5812 linux-vulnerability-mitigation_20260629-2_amd64.buildinfo
Checksums-Sha256:
 ab91dcc4c9c79a0821857b2aa492adf76565a307166dec5f7d80fe532c286336 1491 linux-vulnerability-mitigation_20260629-2.dsc
 b2eb53f2c315978961123c542cb0ed9f90a1aed6f4f1ab5e51cadbb33c853b50 7260 linux-vulnerability-mitigation_20260629-2.debian.tar.xz
 4cc82ccc27402580b0792163147415315c690cb1f0baf1b7bf69f9c0ce560a7f 5812 linux-vulnerability-mitigation_20260629-2_amd64.buildinfo
Files:
 8a8415c7a83bcba7d3ca9e9d08d197e9 1491 admin optional linux-vulnerability-mitigation_20260629-2.dsc
 23cad085f9204e76b6bc966d22a46dbf 7260 admin optional linux-vulnerability-mitigation_20260629-2.debian.tar.xz
 39673316249b00b5d3fe39f25d3861cf 5812 admin optional linux-vulnerability-mitigation_20260629-2_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----

iHUEARYKAB0WIQQmmGg4gLaoSj0ERgL7tPDoCoAiLwUCalPHLwAKCRD7tPDoCoAi
LwA2AP9/vXdgVcKQC9YnJu3Sx4FF6yh0nvrUiUFSIrMtQTC1ygEAmflNYb3BZEs6
5tke/KxWSKeHQxRnRMzmARCMxOH8GAA=
=N6FQ
-----END PGP SIGNATURE-----