#1145581 trixie-pu: package pyasn1/0.6.1-1+deb13u3

#1145581#5
Date:
2026-08-25 18:34:29 UTC
From:
To:
[ Reason ]
Fixing CVE-2026-59884, CVE-2026-59885 and, CVE-2026-59886

[ Impact ]
Denial of service, cpu and memory exhaustion

[ Tests ]
Build it in debusine https://debusine.debian.net/debian/developers/work-request/1108490/

[ Risks ]
No issues as I can see, patches are simple, upstream added unittests.

[ Checklist ]
  [x] *all* changes are documented in the d/changelog
  [x] I reviewed all changes and I approve them
  [x] attach debdiff against the package in (old)stable
  [x] the issue is verified as fixed in unstable

#1145581#12
Date:
2026-09-04 11:04:52 UTC
From:
To:
Control: tags -1 + confirmed

Please go ahed.

Regards,

Adam

#1145581#19
Date:
2026-09-04 19:39:54 UTC
From:
To:
Hello Adam,

Uploaded, thanks!

#1145581#24
Date:
2026-09-05 16:27:06 UTC
From:
To:
package release.debian.org
tags 1145581 = trixie pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie.

Thanks for your contribution!

Upload details
==============

Package: pyasn1
Version: 0.6.1-1+deb13u3

Explanation: fix denial of service issues [CVE-2026-59884 CVE-2026-59885 CVE-2026-59886]

#1145581#29
Date:
2026-09-05 16:27:06 UTC
From:
To:
package release.debian.org
tags 1145581 = trixie pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie.

Thanks for your contribution!

Upload details
==============

Package: pyasn1
Version: 0.6.1-1+deb13u3

Explanation: fix denial of service issues [CVE-2026-59884 CVE-2026-59885 CVE-2026-59886]

#1145581#34
Date:
2026-09-12 08:05:41 UTC
From:
To:
This update was released as part of 13.7.