Bug#1143950: libcrypt-password-perl: Upstream not maintained since 2012, has security issues; should not be released with forky
Salvatore Bonaccorso <[email protected]>
| Newsgroups | gmane.linux.debian.devel.bugs.rc |
|---|---|
| Message-ID | <178621521523.106649.10640994153569065945.reportbug__35990.7888154098$1786215314$gmane$org@eldamar.lan> |
Source: libcrypt-password-perl Version: 0.28-2 Severity: serious Justification: unfit for forky release X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>, [email protected] Hi libcrypt-password-perl has not been update upstream since 2012, and has open security issues (CVE-2026-16235, CVE-2026-6656). So rather than providing libcrypt-password-perl in Debian forky (which got freshly introduced), we might keep it out of testing (or maybe get it removed completely)? Gregor, what is your opinion here? Regards, Salvatore