borgstore (0.5.5-3) unstable; urgency=medium . * Update patch borgstore (0.5.5-2) unstable; urgency=medium . * Add back patches borgstore (0.5.5-1) unstable; urgency=medium . * New upstream version 0.5.5 * Drop patches caddy (2.11.4-1) unstable; urgency=medium . * Team Upload. . [ Nilesh Patra ] * Switch to regular salsa CI * Bump debhelper compatibility level to 14 * New upstream version 2.11.4 * d/rules: Update caddy path for bash completion and manpage * d/caddy.install: Install usr/bin/caddy . . [ Pirate Praveen ] * Update minimum versions of Build-Deps (Closes: #1136666) courier (2.0.6-1) unstable; urgency=medium . * New upstream release. * debian/patches/webadmin-restart-commands.patch: Refresh offset. * debian/patches/0018-Fix-default-configuration-for-Debian.patch: Refresh offset. emacs-jabber (0.12.5-1) unstable; urgency=medium . * Team upload. * New upstream version. exim4 (4.99.4-2) unstable; urgency=high . * Fix two local privilege escalation issues. EXIM-Security-2026-06-22.1 (GCVE-25-2026-07-45-1) Using command-line arguments intended for transferring queue-name through an Exim execution chain, files outside the spool area can be accessed. This can be used for a privilege escalation. EXIM-Security-2026-06-22.3 (GCVE-25-2026-07-45-3) A local user having a .forward file can use a string-expansion there. With certain Exim configurations this can be used as a privilege escalation. golang-github-google-go-tpm (0.9.8-4) unstable; urgency=medium . * Team Upload. * Skip couple of failing tests on s390x golang-github-google-go-tpm (0.9.8-3) unstable; urgency=medium . * Team upload. * debian/rules: Workaound for FTBFS with error Unsupported on loong64 from upstream. * debian/rules: do not need to remove test files due to golang-github- google-go-tpm-tools-dev is avalable in Debian. * debian/control: refine dependencies. golang-github-google-go-tpm (0.9.8-2) unstable; urgency=medium . * Team upload. * debian/control: build-deps on golang-github-google-go-tpm-tools-dev. * debian/control: bump to Standards-version to 4.7.4. * debian/rules: do not exclude tpm2/transport/simulator as we have github.com/google/go-tpm-tools packaged in Debian already. golang-github-google-go-tpm-tools (0.4.8-5) unstable; urgency=medium . * Team Upload. * Update d/p/fix-RADIX_BITS-s390x-ppc64el.patch to add loong64 also to the list * Skip tests on s390x golang-github-google-go-tpm-tools (0.4.8-4) unstable; urgency=medium . * Propagate B-Ds to Depends * Use compat 14 golang-github-google-go-tpm-tools (0.4.8-3) unstable; urgency=medium . * Fix RADIX_BITS for s390x/ppc64el FTBFS golang-github-google-go-tpm-tools (0.4.8-2) unstable; urgency=medium . * Drop unsupported-architecture so we notice if this is fixed golang-github-google-go-tpm-tools (0.4.8-1) unstable; urgency=medium . * Use gbp sign-tags and upstream-vcs-tag * Improve d/copyright * Standards-Version: 4.7.4 golang-github-google-go-tpm-tools (0.4.7-3) unstable; urgency=medium . * Add Depends:libssl-dev for golang*dev * Disable on ppc64el/s390x pending upstream support - https://github.com/google/go-tpm-tools/issues/703 * Enable Salsa rdeps golang-github-google-go-tpm-tools (0.4.7-2) unstable; urgency=medium . * Drop Priority: optional * Standards-Version: 4.7.3 * Bump debian/* copyright years * Drop newgateway pipeline golang-github-google-go-tpm-tools (0.4.7-1) unstable; urgency=medium . * Initial release (Closes: #1093838) golang-github-sigstore-fulcio (1.8.8-1) unstable; urgency=medium . * Team upload * Fix spelling * Use compat 14 graphicsmagick (1.4+really1.3.48-1) unstable; urgency=high . * New upstream release: - fixes CVE-2026-13606: memory corruption via crafted Photo CD (PCD) file (closes: #1141493). * Update library symbols for this release. libcrypt-openssl-rsa-perl (0.41-2) unstable; urgency=medium . * Team upload. * Add patch from upstream Git to fix parsing keys with additional tests. Thanks to Christoph Biedl for the bug report. (Closes: #1142014) libcrypt-openssl-rsa-perl (0.41-1) unstable; urgency=medium . * Team upload. . * Import upstream version 0.37. * Remove «Rules-Requires-Root: no», which is the current default. * Remove «Priority: optional», which is the current default. . * Import upstream version 0.41. * Install new upstream documents. * Declare compliance with Debian Policy 4.7.4. libdatetime-format-w3cdtf-perl (0.09-1) unstable; urgency=medium . * Team upload. . [ Debian Janitor ] * Update standards version to 4.6.2, no changes needed. . [ Samuel Young ] * New upstream version 0.09. * Declare compliance with Debian Policy 4.7.4. * Remove <>, which is the current default. * Remove <>, which is the current default. libguestfs (1:1.58.1-8) unstable; urgency=medium . * Disable quickcheck on riscv64 (Closes: #1142870) libimage-sane-perl (5-3) unstable; urgency=medium . * Team upload. * Skip t/81_scanimage-perl.t during build and autopkgtests. This test calls `scanimage` and tends to time out. (Closes: #869318) * Drop test dependency on sane-utils. Needed only for the skipped t/81_scanimage-perl.t. * Also skip t/options.t. It tries to access the network. * Declare compliance with Debian Policy 4.7.4. * Remove «Rules-Requires-Root: no», which is the current default. * Remove «Priority: optional», which is the current default. libpoe-filter-ssl-perl (0.41-5) unstable; urgency=medium . * Team upload. * Re-upload, as -4 ran into a git-debpush bug. . libpoe-filter-ssl-perl (0.41-4) unstable; urgency=medium . * Team upload. * Add patch to fix build failure with OpenSSL 4. Thanks to Brent Kerby for the patch. (Closes: #1138310) (LP: #2154857) * Declare compliance with Debian Policy 4.7.4. * Remove «Priority: optional», which is the current default. * Annotate test-only build dependencies with . libposix-2008-perl (0.27-1) unstable; urgency=medium . * Team upload. . [ Samuel Young ] * New upstream version 0.27. * Add NEWS.Developer. * Declare compliance with Debian Policy 4.7.4. . [ gregor herrmann ] * Update short and long description. libxs-parse-sublike-perl (0.41-2) unstable; urgency=medium . * autopkgtests: smoke-setup: redirect stderr to stdout for ./Build as well. (Closes: #1142958) * Update years of packaging copyright. * Declare compliance with Debian Policy 4.7.4. mecab (0.996-16.1) unstable; urgency=medium . * Non-maintainer upload. * Fix FTBFS with recent rubygems. (Closes: #1142723) miniflux (2.3.2-1) unstable; urgency=medium . * New upstream version 2.3.2 node-ava (5.3.1+dfsg+~cs46.3.10-7) unstable; urgency=medium . * Team upload * Refresh patch * Avoid a test failure node-pixl-json-stream (1.0.10-1) unstable; urgency=medium . * Initial release (Closes: #1141692) pcp (7.2.0-1) unstable; urgency=high . * New release (full details in CHANGELOG). * Fix pcp-import-benchmarks package typo (closes: #1142200) * Remove useradd from postinst scripts (using sysusers) (closes: #1138692) perl (5.42.2-3) unstable; urgency=medium . * Add 5.42.2 to debian/released-versions. * Upload to unstable. perl (5.42.2-2) experimental; urgency=medium . * [SECURITY] backport various fixes from upstream: + CVE-2025-15649: header parsing in IO::Uncompress::Unzip. (Closes: #1138863) + CVE-2026-7010: CRLF-validation in HTTP::Tiny. (Closes: #1138858) + CVE-2026-8376: Buffer overflow in Perl_study_chunk. (Closes: #1137345) + CVE-2026-48959: CPU exhaustion in IO::Uncompress::Unzip. (Closes: #1138856) + CVE-2026-48961: crash in zipdetails. (Closes: #1138855) + CVE-2026-48962: code execution in IO-Compress via output globs. (Closes: #1138854) + buffer overflows in pack(). (Closes: #1138905) + buffer overflow in Storable. (Closes: #1138906) perl (5.42.2-1) experimental; urgency=medium . * Update to new upstream version 5.42.2. perl (5.42.0-3) experimental; urgency=medium . [ Helmut Grohne ] * Add libcrypt-dev to libperl-dev's Depends. (Closes: #1102978) perl (5.42.0-2) experimental; urgency=medium . * Reinstate Provides: libtest2-suite-perl. (See #1080359) * Refresh cross build support files for most architectures. * Update lintian overrides for 5.42. perl (5.42.0-1) experimental; urgency=medium . * Update to new upstream version 5.42.0. pglogical (2.4.8-1) unstable; urgency=medium . * Team upload. * New upstream version 2.4.8. * CVE-2026-50735: Sanitize tuple data received from the upstream node. * CVE-2026-50736 / CVE-2026-50737: Add subscription_owner parameter to subscriptions. * CVE-2026-50738: Avoid list use-after-free on transaction abort. python-aiokarakeep (0.3.0-1) unstable; urgency=medium . * Initial release. (Closes: #1142951) python-aiolichess (1.3.0-1) unstable; urgency=medium . * Initial release. (Closes: #1142960) python-elevenlabs (2.54.0-1) unstable; urgency=medium . * Initial release. No ITP since packaging from homeassistant dependencies. remind (06.02.09-1) unstable; urgency=medium . * New upstream version 06.02.09 * Port to debhelper 14 rust-bincode-derive-next (3.1.1-1) unstable; urgency=medium . * Package bincode_derive-next 3.1.1 from crates.io using debcargo 2.8.4+alpha.0 rust-easy-color (0.1.13-1) unstable; urgency=medium . * Package easy_color 0.1.13 from crates.io using debcargo 2.8.4 rust-float16 (0.1.5-1) unstable; urgency=medium . * Package float16 0.1.5 from crates.io using debcargo 2.8.4 rust-pango (0.22.8-1) unstable; urgency=medium . * Team upload * Package pango 0.22.8 from crates.io using debcargo 2.8.4 REMOVED: glgrib 1.0-6