- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Salvatore Bonaccorso
- Date:
- 2026-09-08 09:48:04 UTC
- Severity:
- normal
Hi SRM This was to late for 13.7, but please consider it for 13.8. libhtml-formfu-perl in trixie is vulnerable to CVE-2026-19873, which is marked as no-dsa, which may result in denial of service (resource exhaustion). Attached is the debdiff. QA testing was as well done with debusine at: https://debusine.debian.net/debian/developers/work-request/1232730/ Regards, Salvatore