Hello Abhijith,

> Thanks. So just to be clear, LTS team only uploaded to bullseye suite
> (5.12.0+dfsg-1+deb11u5) and with a cursory read of the above bug
> report, I believe bullseye version is _safe_ given we backported
> function "is_existing_subpath".

Yes. I think 5.12.0+dfsg-1+deb11u5 seems safe from this issue.
You don't need to update bullseye suite.


> But I have not tested with an actual epub file. Let me see if I can
> find a epub file as described in the bug report. If you have that PoC,
> please do share.

I found such file from EPUB 3 Community Group site.
https://idpf.github.io/epub3-samples/30/samples.html

And add autopkgtest for this issue.

I was rebuild my commits in bookworm branch on GitHub.
https://github.com/debian-calibre/calibre/compare/debian/6.13.0+repack-2+deb12u9...bookworm-update

--
YOKOTA Hiroshi

Reply via email to