Debian Patches

Status for libgit2/1.9.0+ds-2+deb13u1

Patch Description Author Forwarded Bugs Origin Last update
disable-online-tests.patch disable-online-tests
Skip tests that needs an active internet connection
Utkarsh Gupta <utkarsh@debian.org> not-needed 2022-08-28
disable-flaky-stat-tests.patch Ignore test failures because of stat() Timo Röhling <roehling@debian.org> not-needed 2022-08-31
Use-Multi-Arch-destination-for-CMake-config.patch Use Multi-Arch destination for CMake config Timo Röhling <roehling@debian.org> no 2025-01-12
backports/CVE-2026-5917.patch Fix CVE-2026-5917: shell command injection in SSH transport Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/b2105b8e60798cb28086d4c648b1cb4854eadccb 2026-08-16
backports/CVE-2026-53583.patch Fix CVE-2026-53583: inverted cert validity check for IP addresses Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/c2aa35409ee0e6515df64da49750f13a0a42c47f 2026-08-16
backports/CVE-2026-53584.patch Fix CVE-2026-53584: unsanitized submodule paths Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/ec7371da9f359cd8293e9108e7a0b1c1b61b67c4 2026-08-16
backports/CVE-2026-53585.patch Fix CVE-2026-53585: limit pack object size to 2GiB Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/0cdfdd5fa8f8514c82413025e1e0808866cf7c30 2026-08-19
backports/CVE-2026-53586.patch Fix CVE-2026-53586: Pass correct hostname to auth layer after redirect Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/af2b29ad0a74d5bac9751376879ddaf848136d3b 2026-08-16
backports/CVE-2026-53587.patch Fix CVE-2026-53587: read buffer overflow in capability check Timo Röhling <roehling@debian.org> no upstream, https://github.com/libgit2/libgit2/commit/affda60c10fcef16723451c0d7dc71b71dc20ad3 2026-08-16

All known versions for source package 'libgit2'

Links