Re: Cyrus IMAP 3.12.3, 3.10.3, and 3.8.7 released

Jean Charles Delépine via Info <[email protected]> Wed, 15 Jul 2026 20:37:46 +0200
Newsgroups gmane.mail.imap.cyrus
Message-ID <20260715203746.Horde.2W83tZSldQ2bBxzWKdNG1RH@webmail.u-picardie.fr>
Hi,

Quoting ellie timoney <[email protected]>:

> The Cyrus team is proud to announce the immediate availability of=20=20
> new versions of Cyrus IMAP: 3.12.3, 3.10.3, and 3.8.7.
>
> These versions contains fixes for a number of security issues.=20=20=20
> Please see the release notes for details.
>
> Release notes:
>
>=20=20=20=20=20=20
> https://www.cyrusimap.org/3.12/imap/download/release-notes/3.12/x/3.12.3.=
html
>=20=20=20=20=20=20
> https://www.cyrusimap.org/3.10/imap/download/release-notes/3.10/x/3.10.3.=
html
>=20=20=20=20=20=20
> https://www.cyrusimap.org/3.8/imap/download/release-notes/3.8/x/3.8.7.html

I would like to backport my PR #6081 to the 3.8 branch (my production=20=20
installation is currently running Cyrus 3.8), but I am having trouble=20=20
reproducing the build/test environment used by the project.

I am using the Cyrus Docker environment=20=20
(ghcr.io/cyrusimap/cyrus-docker:bookworm) and the dar workflow, but I=20=20
have not been able to get a clean build, either for the 3.8 branch or=20=20
for 3.10.

As an additional data point: the Debian packaging tools are able to=20=20
successfully build a package from the 3.8.7 source, so the issue seems=20=20
to be related to the Docker/development build environment rather than=20=20
the source release itself.

Could you please let me know how the development team currently builds=20=20
and tests these branches?

In particular:

     Which Docker image/tag is used for CI and developer testing?

     What is the expected dar workflow to build a release branch?

     Are there any branch-specific configuration steps or dependencies=20=20
that are not obvious from the Docker image?

I am asking because I need to prepare a backport for a Cyrus 3.8=20=20
installation in production, and the security fixes included in 3.8.7=20=20
make it important for me to validate the backport quickly.

I would like to make sure I am using the same environment as the=20=20
project before preparing the patch.

Thanks!

             Jean Charles Del=C3=A9pine
--=20
Service syst=C3=A8mes et r=C3=A9seaux - DISI

Universit=C3=A9 de Picardie Jules Verne
5, rue du moulin neuf - 80000 Amiens


------------------------------------------
Cyrus: Info
Permalink: https://cyrus.topicbox.com/groups/info/T78ae3d33b340593c-M03a2f8=
c912cd4a946559e80b
Delivery options: https://cyrus.topicbox.com/groups/info/subscription