https://www.freexian.com/./index.xml
· source : Home | Freexian
Recent content in Home on Freexian
🗒️ Articles (40 affichés sur 100 retenus)
📄 100
30/10/2020 09:07
How can I access the package repositories? The package repositories are private. Only customers of the service have access to them. See the documentation for details on how you can access them. On how many servers can I use the package repositories? This depends on the offer that you picked. Up to 3…
Lire l'article →
05/12/2025 06:41
After subscription to the Extended LTS (ELTS) service, Freexian hands over credentials — under the form of a username and a password — to the technical contact listed on the service order form. You will need those to access the APT repositories, they are referred to as ${username} and ${password} in…
Lire l'article →
28/10/2020 10:46
The package repositories hosting the various PHP releases are private. That means that only customers of this service can get access to them. This document explains the various options available and the required steps to configure those repositories. Installing the freexian archive GPG key All the p…
Lire l'article →
10/07/2018 09:58
The kernel versions originally shipped with each Debian release are no longer maintained during the Extended LTS phase of each release’s lifecycle. Instead, we provide backports of Linux from more recent Debian releases. Currently, this means that for Debian 9 “stretch” and Debian 10 “buster” we pro…
Lire l'article →
30/05/2018 10:46
Follow with an RSS feed The Extended LTS Advisories (ELA) are published in the Updates section of this website. They can be monitored through this RSS feed. Follow by email If you want to be notified by email, you can subscribe to our dedicated mailing list. Click here, fill the fields, submit the f…
Lire l'article →
20/04/2022 10:46
One package list per Debian release We need a list of packages to support for each Debian release that you are using. The best way to build this list is to gather the list of installed packages on all the Debian systems that you are running. The dpkg-query command can be used for this: $ dpkg-query …
Lire l'article →
20/04/2022 09:58
Explanations about the ELTS cost estimation We have been doing security support of Debian packages since 2014 so we have a long history of data that lets us estimate the workload (and thus cost) required to keep each package secure. We also have historical data of our customers so we know which pack…
Lire l'article →
06/11/2025 10:00
Extended LTS for Debian 13 Trixie Support period 2025-08-09: Publication of Debian 13 Trixie 2028-08-10: Security support handed over to the Debian LTS team. 2030-06-30: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2035-06-30: End of support. Architectur…
Lire l'article →
27/11/2023 10:00
Extended LTS for Debian 12 Bookworm Support period 2023-06-10: Publication of Debian 12 Bookworm 2026-06-11: Security support handed over to the Debian LTS team. 2028-06-30: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2033-06-30: End of support. Archite…
Lire l'article →
27/11/2023 09:58
Extended LTS for Debian 11 Bullseye Support period 2021-08-14: Publication of Debian 11 Bullseye 2024-08-15: Security support handed over to the Debian LTS team. 2026-08-31: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2031-06-30: End of support. Archite…
Lire l'article →
12/09/2023 09:58
Extended LTS for Debian 10 Buster Support period 2019-07-06: Publication of Debian 10 Buster 2022-06-30: Security support handed over to the Debian LTS team. 2024-06-30: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2029-06-30: End of support. Architectur…
Lire l'article →
20/04/2022 09:58
Extended LTS for Debian 9 Stretch Support period 2017-06-17: Publication of Debian 9 Stretch 2020-06-30: Security support handed over to the Debian LTS team. 2022-06-30: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2027-06-30: End of support. Architectur…
Lire l'article →
20/04/2022 09:58
Extended LTS for Debian 8 Jessie Support period 2015-04-26: Publication of Debian 8 Jessie 2018-06-17: Security support handed over to the Debian LTS team. 2020-06-30: End of support in Debian. Security support now handled by Freexian’s Extended LTS service. 2025-06-30: End of support. Architectures…
Lire l'article →
28/10/2020 10:13
Why setup a private mirror? Only customers of the “enterprise” offer have the required access to setup a private mirror with rsync (which is what’s described on this page). They typically have very large setup with several thousands of servers needing access to the PHP LTS repositories and it makes …
Lire l'article →
04/07/2024 14:10
This document provides a base to backport security patches provided by Freexian Debian ELTS into Raspberry PI OS packages. We describe a git-based workflow, particularly using git-buildpackage, focusing also on source debian packages in "3.0 (quilt)" format, so the (security) patches to be backporte…
Lire l'article →
12/08/2026 13:57
Package : ca-certificates Version : 20250419~deb12u1~deb11u1~deb10u1 (buster) ca-certificates a package that contains the certificate authorities shipped with Mozilla’s browser to allow SSL-based applications to check for the authenticity of SSL connections, was updated Mozilla certificate authority…
Lire l'article →
12/08/2026 09:58
Package : bind9 Version : 1:9.11.37+git20260722.018aa2e+dfsg-0~deb10u1~deb9u1 (stretch) Related CVEs : CVE-2023-4408 CVE-2025-8677 CVE-2025-40778 CVE-2026-1519 CVE-2026-3039 CVE-2026-3592 CVE-2026-5946 CVE-2026-5950 CVE-2026-10723 CVE-2026-11622 CVE-2026-11721 CVE-2026-13204 CVE-2026-13321 bind9 a p…
Lire l'article →
12/08/2026 08:14
Package : jq Version : 1.5+dfsg-1.3+deb9u2 (stretch), 1.5+dfsg-2+deb10u2 (buster) Related CVEs : CVE-2026-32316 CVE-2026-33947 CVE-2026-33948 CVE-2026-39956 CVE-2026-39979 CVE-2026-40164 CVE-2026-41256 CVE-2026-41257 CVE-2026-43894 CVE-2026-43895 CVE-2026-43896 CVE-2026-47770 CVE-2026-49839 CVE-2026…
Lire l'article →
11/08/2026 08:07
Package : nss Version : 2:3.26.2-1.1+deb9u11 (stretch), 2:3.42.1-1+deb10u12 (buster) Related CVEs : CVE-2026-16389 Tomoya Nakanishi discovered a flaw in nss, the Mozilla Network Security Service library, which may result in execution of arbitrary code if a specially crafted certificate is processed.
Lire l'article →
10/08/2026 17:50
Package : libinput Version : 1.6.3-1+deb9u1 (stretch) Related CVEs : CVE-2026-50292 A vulnerability was found in libinput, an input device management and event handling library. CVE-2026-50292 A udev helper provided by libinput performed insufficient sanitising of device properties, which can result…
Lire l'article →
10/08/2026 17:49
Package : libinput Version : 1.12.6-2+deb10u2 (buster) Related CVEs : CVE-2022-1215 CVE-2026-50292 Two vulnerabilities were found in libinput, an input device management and event handling library. CVE-2022-1215 libinput did not properly handled evdev devices, which may potentially be exploited by m…
Lire l'article →
08/08/2026 00:50
Package : nginx Version : 1.14.2-2+deb10u8 (buster) Related CVEs : CVE-2026-42055 CVE-2026-48142 Multiple vulnerabilities were discoverd in Nginx, a high-performance web and reverse proxy server, which could result in remote code execution, denial of service or memory disclosure. CVE-2026-42055 NGIN…
Lire l'article →
07/08/2026 08:04
Package : linux-6.1 Version : 6.1.180-1~deb9u1 (stretch), 6.1.180-1~deb10u1 (buster) Related CVEs : CVE-2024-36013 CVE-2025-40196 CVE-2026-31610 CVE-2026-43216 CVE-2026-46135 CVE-2026-53332 CVE-2026-53392 CVE-2026-53393 CVE-2026-53399 CVE-2026-53400 CVE-2026-53402 CVE-2026-63797 CVE-2026-63806 CVE-2…
Lire l'article →
06/08/2026 21:30
Package : redis Version : 5:5.0.14-1+deb10u11 (buster) Related CVEs : CVE-2026-66373 Fix a potential remote-code execution vulnerability in Redis, the key-value database. In the unusual case where an authenticated attacker could execute the RESTORE command, a malicious RESTORE payload could have res…
Lire l'article →
05/08/2026 16:45
Package : p7zip Version : 16.02+really26.02+dfsg-0+deb9u1 (stretch), 16.02+really26.02+dfsg-0+deb10u1 (buster) Related CVEs : CVE-2026-14266 CVE-2026-48092 CVE-2026-48095 CVE-2026-48101 CVE-2026-48102 CVE-2026-48103 CVE-2026-48104 CVE-2026-48111 CVE-2026-48112 CVE-2026-58052 Multiple vulnerabilities…
Lire l'article →
05/08/2026 08:05
Package : linux-5.10 Version : 5.10.262-1~deb9u1 (stretch), 5.10.262-1~deb10u1 (buster) Related CVEs : CVE-2022-49803 CVE-2022-50114 CVE-2023-52494 CVE-2025-23131 CVE-2025-39931 CVE-2026-23204 CVE-2026-31451 CVE-2026-31755 CVE-2026-43216 CVE-2026-43219 CVE-2026-43499 CVE-2026-46116 CVE-2026-46135 CV…
Lire l'article →
03/08/2026 23:11
Package : poppler Version : 0.48.0-2+deb9u8 (stretch), 0.71.0-5+deb10u5 (buster) Related CVEs : CVE-2025-43718 CVE-2025-43903 CVE-2025-50420 CVE-2025-52885 CVE-2025-52886 CVE-2026-10118 CVE-2025-43718 It was discovered that crafted PDF files containing deeply nested structures within the metadata co…
Lire l'article →
03/08/2026 14:24
Package : openjdk-8 Version : 8u502-ga-1~deb9u1 (stretch) Related CVEs : CVE-2026-41254 CVE-2026-46968 CVE-2026-47010 CVE-2026-47021 CVE-2026-47027 CVE-2026-47057 CVE-2026-47058 CVE-2026-47059 CVE-2026-47063 CVE-2026-60147 Several vulnerabilities have been discovered in the OpenJDK Java runtime, whi…
Lire l'article →
30/07/2026 14:01
Package : libraw Version : 0.19.2-2+deb10u6 (buster) Related CVEs : CVE-2026-20884 CVE-2026-20889 CVE-2026-21413 CVE-2026-24660 CVE-2026-20884 An integer overflow vulnerability was discovered in the decoder routine for deflate-compressed floating-point DNG RAW files, which may lead to heap buffer ov…
Lire l'article →
30/07/2026 10:33
Package : imagemagick Version : 8:6.9.10.23+dfsg-2.1+deb10u21 (buster) Related CVEs : CVE-2026-55594 CVE-2026-55628 CVE-2026-56377 CVE-2026-61464 CVE-2026-61465 CVE-2026-61857 CVE-2026-61858 CVE-2026-61859 CVE-2026-61860 CVE-2026-61862 CVE-2026-61863 CVE-2026-61864 CVE-2026-61865 CVE-2026-61866 CVE-…
Lire l'article →
28/07/2026 18:09
Package : libxfont1 Version : 1:1.5.2-4+deb9u1 (stretch) Related CVEs : CVE-2026-56001 CVE-2026-56002 CVE-2026-56003 CVE-2026-56001 A heap buffer overflow in BitmapScaleBitmaps in due to an overflowing 32-bit size. CVE-2026-56002 A heap bufferflow in pcfReadFont() due to missing glyph bounds checkin…
Lire l'article →
28/07/2026 08:51
Package : openjdk-11 Version : 11.0.32+9-2~deb10u1 (buster) Related CVEs : CVE-2026-41254 CVE-2026-46917 CVE-2026-46968 CVE-2026-47010 CVE-2026-47021 CVE-2026-47027 CVE-2026-47057 CVE-2026-47058 CVE-2026-47059 CVE-2026-47063 CVE-2026-60147 Several vulnerabilities have been discovered in the OpenJDK …
Lire l'article →
27/07/2026 01:25
Package : bind9 Version : 1:9.11.37+git20260722.018aa2e+dfsg-0~deb10u1 (buster) Related CVEs : CVE-2025-8677 CVE-2026-1519 CVE-2026-3039 CVE-2026-3592 CVE-2026-5946 CVE-2026-5950 CVE-2026-10723 CVE-2026-11622 CVE-2026-11721 CVE-2026-13204 CVE-2026-13321 Several vulnerabilities were discovered in BIN…
Lire l'article →
27/07/2026 00:49
Package : php-phpseclib Version : 2.0.30-2~deb10u4 (buster) Related CVEs : CVE-2023-52892 CVE-2026-32935 CVE-2026-40194 CVE-2026-44167 CVE-2026-55599 Several vulnerabilities were discovered in phpseclib, a PHP secure communications library, which could result in hostname validation bypass, timing si…
Lire l'article →
26/07/2026 08:57
Package : hplip Version : 3.16.11+repack0-3+deb9u2 (stretch), 3.18.12+dfsg0-2+deb10u2 (buster) Related CVEs : CVE-2026-8631 CVE-2026-8632 Two issues have been found in hplip, the HP Linux Printing and Imaging System. They are both related to privilege escalation and/or arbitrary code execution.
Lire l'article →
24/07/2026 14:44
Package : grub2 Version : 2.06-3~deb10u5 (buster) Related CVEs : CVE-2024-45774 CVE-2024-45775 CVE-2024-45776 CVE-2024-45777 CVE-2024-45778 CVE-2024-45779 CVE-2024-45780 CVE-2024-45781 CVE-2024-45782 CVE-2024-45783 CVE-2025-0622 CVE-2025-0624 CVE-2025-0677 CVE-2025-0678 CVE-2025-0684 CVE-2025-0685 C…
Lire l'article →
23/07/2026 23:04
Package : squid Version : 4.13-10+deb11u7~deb10u1 (buster) Related CVEs : CVE-2026-33515 CVE-2026-33526 CVE-2026-47729 CVE-2026-50012 Multiple security issues were discovered in the Squid proxy caching server, which could result in information disclosure or denial of service.
Lire l'article →
22/07/2026 10:03
Package : nss Version : 2:3.26.2-1.1+deb9u10 (stretch) Related CVEs : CVE-2026-6772 An Incorrect boundary conditions check was discovered in NSS, a set of cryptographic libraries, which may result in or denial of service or potentially the execution of arbitrary code.
Lire l'article →
22/07/2026 10:02
Package : nss Version : 2:3.42.1-1+deb10u11 (buster) Related CVEs : CVE-2026-6767 CVE-2026-6772 CVE-2026-12318 Several vulnerabilities were discovered in NSS, a set of cryptographic libraries, which may result in or denial of service or potentially the execution of arbitrary code.
Lire l'article →
22/07/2026 00:00
The Debian LTS Team, funded by [Freexian’s Debian LTS offering] (https://www.freexian.com/lts/debian/), is pleased to report its activities for June. Activity summary During the month of June, 20 contributors have been paid to work on Debian LTS (links to individual contributor reports are located b…
Lire l'article →