← Back to team overview

debcrafters-packages team mailing list archive

[Bug 2112016] Re: Merge jq from Debian Unstable for questing

 

This bug was fixed in the package jq - 1.7.1-6ubuntu1

---------------
jq (1.7.1-6ubuntu1) questing; urgency=medium

  * Merge with Debian unstable (lp: #2112016). Remaining changes:
    - d/control: don't build-depend on python3-jsonschema on i386, since that
      package is uninstallable on Ubuntu i386. This works for now because
      python3-jsonschema is only used in a script during tests if the manual.yml
      file is patched by the packaging. (LP: #2104170)

jq (1.7.1-6) unstable; urgency=medium

  * Cherry-pick upstream commit for CVE-2024-23337 (Closes: #1106289)

jq (1.7.1-5) unstable; urgency=medium

  * Cherry-pick upstream commit for CVE-2024-53427 (Closes: #1102679)
  * d/copyright: Update copyright year.

jq (1.7.1-4) unstable; urgency=medium

  [ Andreas Hasenack ]
  * Update patch to call python3 instead of python (Closes: #1102376)

 -- Ankush Pathak <ankush.pathak@xxxxxxxxxxxxx>  Thu, 05 Jun 2025
16:01:26 +0530

** Changed in: jq (Ubuntu)
       Status: Triaged => Fix Released

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-23337

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-53427

-- 
You received this bug notification because you are a member of
Debcrafters packages, which is subscribed to jq in Ubuntu.
https://bugs.launchpad.net/bugs/2112016

Title:
  Merge jq from Debian Unstable for questing

Status in jq package in Ubuntu:
  Fix Released

Bug description:
  Scheduled-For: ubuntu-25.06
  Ubuntu: 1.7.1-3ubuntu1
  Debian Unstable: 1.7.1-6

  A new release of jq is available for merging from Debian Unstable.

  If it turns out this needs a sync rather than a merge, please change
  the tag 'dcr-merge' to 'dcr-sync', and (optionally) update the title
  as desired.

  ### New Debian Changes ###

  jq (1.7.1-6) unstable; urgency=medium

    * Cherry-pick upstream commit for CVE-2024-23337 (Closes: #1106289)

   -- ChangZhuo Chen (陳昌倬) <czchen@xxxxxxxxxx>  Sun, 25 May 2025
  03:15:28 +0800

  jq (1.7.1-5) unstable; urgency=medium

    * Cherry-pick upstream commit for CVE-2024-53427 (Closes: #1102679)
    * d/copyright: Update copyright year.

   -- ChangZhuo Chen (陳昌倬) <czchen@xxxxxxxxxx>  Sat, 12 Apr 2025
  16:09:04 +0800

  jq (1.7.1-4) unstable; urgency=medium

    [ Andreas Hasenack ]
    * Update patch to call python3 instead of python (Closes: #1102376)

   -- ChangZhuo Chen (陳昌倬) <czchen@xxxxxxxxxx>  Wed, 09 Apr 2025
  22:34:25 +0800


  ### Old Ubuntu Delta ###

  jq (1.7.1-3ubuntu1) plucky; urgency=medium

    * d/control: don't build-depend on python3-jsonschema on i386, since that
      package is uninstallable on Ubuntu i386. This works for now because
      python3-jsonschema is only used in a script during tests if the manual.yml
      file is patched by the packaging. (LP: #2104170)

   -- Andreas Hasenack <andreas@xxxxxxxxxxxxx>  Mon, 07 Apr 2025
  21:02:49 -0300

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/jq/+bug/2112016/+subscriptions



References