Skip to content

fix(network-manager): CVE-2025-9615 - Upgrade to 1.56.0#21

Closed
deepin-ci-robot wants to merge 1 commit into
masterfrom
upgrade/CVE-2025-9615
Closed

fix(network-manager): CVE-2025-9615 - Upgrade to 1.56.0#21
deepin-ci-robot wants to merge 1 commit into
masterfrom
upgrade/CVE-2025-9615

Conversation

@deepin-ci-robot

Copy link
Copy Markdown
Contributor

CVE Fix: CVE-2025-9615

Summary

Upgrade network-manager from 1.44.2 to 1.56.0 to fix CVE-2025-9615.

Changes

  • Upgrade upstream source to NetworkManager 1.56.0
  • Merge Debian packaging from 1.56.0-7
  • Add deepin changelog entry for 1.56.0-7deepin1

Strategy

Upgrade (pre-approved)

Verification

  • Source replaced with NetworkManager 1.56.0
  • Debian packaging updated from Debian 1.56.0-7
  • Changelog entry added
  • Forbidden directories (.github/, .gitlab/, debian/deepin/) removed

Generated-By: glm-5.1
Co-Authored-By: hudeng hudeng@deepin.org

Upgrade to upstream version 1.56.0 to fix CVE-2025-9615.
Merge packaging from Debian 1.56.0-7.

Upstream: https://networkmanager.dev/
Generated-By: glm-5.1
Co-Authored-By: hudeng <hudeng@deepin.org>
@github-actions

Copy link
Copy Markdown

TAG Bot

TAG: 1.56.0-7deepin1
EXISTED: no
DISTRIBUTION: unstable

@deepin-ci-robot deepin-ci-robot requested review from myml and zccrs May 14, 2026 18:53
@deepin-ci-robot

Copy link
Copy Markdown
Contributor Author

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
Once this PR has been reviewed and has the lgtm label, please assign hudeng-go for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@deepin-ci-robot

Copy link
Copy Markdown
Contributor Author

/hold
因为该quilt包的上游版本号变更,详情见: deepin-community/infra-settings#134

@deepin-ci-robot deepin-ci-robot added do-not-merge/hold cve CVE security fix generated-by-ai Generated by AI agent labels May 14, 2026
@deepin-community-ci-bot

Copy link
Copy Markdown

TAG Bot

New tag: 1.44.2-7deepin8
DISTRIBUTION: unstable
Suggest: synchronizing this PR through rebase #22

@deepin-community-ci-bot

Copy link
Copy Markdown

TAG Bot

New tag: 1.44.2-7deepin9
DISTRIBUTION: unstable
Suggest: synchronizing this PR through rebase #24

@hudeng-go hudeng-go closed this Jun 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

cve CVE security fix do-not-merge/hold generated-by-ai Generated by AI agent

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants