control: tags -1 moreinfo

Hi Sergei,

On 26-06-2025 13:00, Sergei Golovan wrote:
So what would be better, to upload minimal changes which fix only
CVE-2025-4748, or the full 27.3.4.1?


Can you please check our FAQ [1] and try to answer the questions listed in the "new upstream" section? I'll note that erlang is a key package.

As I don't know how erlang works, does it mean we need to rebuild all reverse dependencies for the CVE to get fixed, or is the effect contained in the binaries build by src:erlang? (Same for the other bug fixes in the new upstream version).

Paul

[1] https://release.debian.org/testing/FAQ.html

Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

Reply via email to