blebox-uniapi (2.5.8-1) unstable; urgency=medium . * New upstream release. fpdf2 (2.8.9-1) unstable; urgency=medium . * New upstream release. golang-github-traefik-yaegi (0.16.1+git20260209.fcb76d1-3) unstable; urgency=medium . [ Marcos Talau ] * Team upload. * debian/salsa-ci.yml: Add to provide CI tests for Salsa . [ Reinhard Tartler ] * Switch to standard Salsa CI pipeline * Skip issue-1010 tests on Go 1.27 (Closes: #1146215) * Declare compliance with Debian Policy 4.7.4 * Upgrade to debhelper compat 14 * debian/control: add Static-Built-Using to yaegi * debian/patches: standardize numbering and DEP-3 metadata * debian: add lintian override for stdlib generic templates libdatetime-timezone-perl (1:2.71-1+2026e) unstable; urgency=medium . * Import upstream version 2.71. This release is based on version 2026e of the Olson database. It includes contemporary changes for Manitoba, CA. libimager-qrcode-perl (0.035+dfsg-2) unstable; urgency=medium . * Team upload. * Fix Homepage field in debian/control. Thanks to onders for the bug report. (Closes: #1134711) * Build-Depend on dh-sequence-perl-imager instead of using «--with perl_imager» in debian/rules. * Make short description a noun phrase. * Declare compliance with Debian Policy 4.7.4. * Remove «Priority: optional», which is the current default. orafce (4.16.13-1) unstable; urgency=medium . * New upstream version 4.16.13. pgpool2 (4.7.3-1) unstable; urgency=medium . * New upstream version 4.7.3. (Closes: #1149670) * CVE-2026-92867: An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution. * CVE-2026-92868: An improper certificate validation vulnerability exists in Pgpool- II, which may allow an unauthenticated attacker to bypass client certificate authentication. * CVE-2026-92869: An out-of-bounds write vulnerability exists in Pgpool-II, which may allow an authenticated attacker to cause abnormal process termination. * CVE-2026-92870: A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination. * CVE-2026-92871: A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process. * CVE-2026-92872: Pgpool-II inserts sensitive information into log file, which may allow an authenticated attacker to obtain the cluster information. * CVE-2026-92873: Pgpool-II contains an incorrect implementation of an authentication algorithm, which may allow an unauthenticated attacker to promote an arbitrary watchdog node to the leader node. pgvector (0.8.7-1) unstable; urgency=medium . * New upstream release. php-doctrine-lexer (3.0.3-1) unstable; urgency=medium . [ DualFroz ] * fix: make resetPosition() accept a token character offset python-aiomelcloudhome (0.2.4-1) unstable; urgency=medium . * New upstream release. python-cmaes (0.13.1-1) unstable; urgency=medium . * New upstream version. * Standards-version 4.7.4.1. No changes needed. pyvicare (2.63.0-1) unstable; urgency=medium . * New upstream release. ruby-jekyll-include-cache (0.3.1-1) unstable; urgency=medium . * Team upload. * New upstream release. ruby-telesign (4.1.1-1) unstable; urgency=medium . * Team upload. * New upstream release. rust-gdk-pixbuf-sys (0.22.9-1) unstable; urgency=medium . * Team upload * Package gdk-pixbuf-sys 0.22.9 from crates.io using debcargo 2.8.4 * Build with rust-system-deps 7 rust-sequoia-keystore-openpgp-card (0.2.2-1) unstable; urgency=medium . * Package sequoia-keystore-openpgp-card 0.2.2 from crates.io using debcargo 2.8.4 - Closes: #1145885. - refresh relax-deps.patch. rust-sequoia-keystore-openpgp-card (0.2.1-1) unstable; urgency=medium . * Team upload. * Package sequoia-keystore-openpgp-card 0.2.1 from crates.io using debcargo 2.8.3 * Relax dependency on openpgp-card crate. rust-sequoia-keystore-openpgp-card (0.2.0-1) unstable; urgency=medium . * Package sequoia-keystore-openpgp-card 0.2.0 from crates.io using debcargo 2.7.8 - drop remove-rsa-dep.patch and refresh the other patch. - update d/copyright years. rust-sequoia-keystore-openpgp-card (0.1.0-2) unstable; urgency=medium . [ Holger Levsen ] * Package sequoia-keystore-openpgp-card 0.1.0 from crates.io using debcargo 2.7.1 * debian/patches: add dep3 headers. . [ Alexander Kjäll ] * Package sequoia-keystore-openpgp-card 0.1.0 from crates.io using debcargo 2.7.1 * Remove rust-rsa dependency. Closes: #1084118 rust-sequoia-keystore-openpgp-card (0.1.0-1) unstable; urgency=medium . * Package sequoia-keystore-openpgp-card 0.1.0 from crates.io using debcargo 2.6.1 veusz (4.2.1-1) unstable; urgency=medium . * Update to Veusz 4.2.1 * Add upstream patch to remove failing test with Qt 6.11.2 (closes: #1149110) . veusz (4.2-1) unstable; urgency=low . * Update to Veusz 4.2 * Drop upstreamed patch to use tomllib instead of tomli