Hi, On Sun, May 25, 2025 at 08:24:53PM -0700, Otto Kekäläinen wrote: > > > MariaDB 11.10.13 is now out and ready for upload in MR!119. > > > > > > Should we make this a security upload or put into stable-updates? > > > Does the security team have a preference? > > > > > > I am fine either way. > > > > I think the no-dsa marked CVEs can still be done in the 12.12 point > > release. > > What do you mean by "no-dsa"? Do you want to have 1:10.11.12-0+deb12u1 > a security upload to close #1105976 and #1100437 or should I upload it > to proposed-updates and we wait for 12.12?
no-dsa means please fix it via the next point release. > > Please make sure that the fixes land in unstable and can migrate to > > testing, as we are in special times for the freeze for trixie. > > The upload of future 11.8.x series is a separate and independent > decision. This e-mail is about 1:10.11.12-0+deb12u1 specifically. You still want to have the fixes in trixie, so to avoid as well regressions when updating from bookworm to trixie. Thus my comment. Thank you, Regards, Salvatore