Skip to content

Conversation

@bluvulture
Copy link
Contributor

No description provided.

@bluvulture bluvulture requested review from brusch and Copilot July 25, 2025 07:46
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR updates the Debian package repository URL from the main distribution server to the archive server for the bullseye-backports repository.

  • Updates Debian repository URL from deb.debian.org to archive.debian.org for bullseye-backports

RUN set -eux; \
DPKG_ARCH="$(dpkg --print-architecture)"; \
echo "deb http://deb.debian.org/debian bullseye-backports main" > /etc/apt/sources.list.d/backports.list; \
echo "deb http://archive.debian.org/debian bullseye-backports main" > /etc/apt/sources.list.d/backports.list; \
Copy link

Copilot AI Jul 25, 2025

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Using HTTP instead of HTTPS for package repository URLs creates a security vulnerability. Package downloads could be intercepted or tampered with through man-in-the-middle attacks. Consider changing to 'https://archive.debian.org/debian' to ensure secure package verification.

Suggested change
echo "deb http://archive.debian.org/debian bullseye-backports main" > /etc/apt/sources.list.d/backports.list; \
echo "deb https://archive.debian.org/debian bullseye-backports main" > /etc/apt/sources.list.d/backports.list; \

Copilot uses AI. Check for mistakes.
@bluvulture bluvulture merged commit b3bf2a7 into 2.x Jul 28, 2025
1 check failed
@jdreesen
Copy link
Contributor

Why no HTTPS?

@bluvulture bluvulture deleted the archive_repo_update branch July 28, 2025 09:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants