There is 1 open security issue in bullseye.
commit bb17074bfdd511dab1fa12f75765d06d6c1e1853 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Tue Jun 24 14:17:00 2025 +0100 systemd-boot: reduce harmless noise on cleanup Closes: #1108264 commit 363898fe05604b4cd7754dfebbbaef6fb5c33f2a Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Tue Jun 24 13:43:35 2025 +0100 systemd-boot: remove fb too on removal Follow-up for a71d94c611dffcc5beb5ea4c0e1e177d19f5dde8 Gbp-Dch: short commit 84966b99cdfc7ea3ee35163ad224775d9be90055 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Sun Jun 22 17:46:23 2025 +0100 systemd-container: pick up renamed keyring file Gbp-Dch: ignore commit 7aab0da57c0df18bf552aae58076500081f93e01 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Thu Jun 19 12:54:20 2025 +0100 udev: add 'clock' system group for PTP rules commit 01b5b96a2f85594c2c8caf5d10048a4ec41f9d89 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Sat Jun 14 17:26:49 2025 +0100 Install new files for upstream build Needed for https://github.com/systemd/systemd/pull/37833 Gbp-Dch: ignore commit a4bdf87f03e06fe687f0bf7596af31d0f2ac80b1 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Fri May 30 13:39:04 2025 +0100 Revert "systemd-boot: always pull in systemd-boot-efi on amd64/arm64" This caused dpkg-buildpackage to prune the systemd-boot-signed dependency for some reason, probably because the alternative is always satisfied or so This reverts commit e29629dcaf18167a2b776e5e0571a9c392f17365. commit e29629dcaf18167a2b776e5e0571a9c392f17365 Author: Luca Boccassi <luca.boccassi@gmail.com> Date: Fri May 30 11:46:27 2025 +0100 systemd-boot: always pull in systemd-boot-efi on amd64/arm64 This is the main integration point, so ensure the unsigned binaries are installed even if the signed packages are available.