Debian Server 11 Bullseye Update
Your rating
Rate update installation process
Risk factor
No ratings yet. Be the first to rate this update.
AI enhanced content
Update Summary
Debian 11 (bullseye) release notes for ARM EABI describe the upgrade from buster, major package and desktop updates, and important operational changes such as cgroup v2, persistent journaling, and exFAT support. They also document upgrade cautions, deprecations, and known severe bugs.
Update Details
Security
- Password hashing defaults to yescrypt for local accounts, improving resistance to dictionary attacks.
- Linux 5.10 enables user namespaces by default to improve sandboxing for browsers and container tools.
- Linux disables unprivileged
bpf()calls by default for security hardening. - Security support is limited for some browser engines and Go-based packages; they may not receive full backported security fixes.
Bug Fixes
- OpenSSH upgrade may temporarily block new SSH connections during the upgrade window.
- Open vSwitch may require an
/etc/network/interfaceschange to recover bridges after boot. rsync --noatimewas renamed to--open-noatime; older scripts may need updating.libgc1c2-dependent packages may require running the upgrade twice.fuse3replacesfusefor packages such asgvfs-fuse,kio-fuse, andsshfs.
New Features
- Driverless printing now includes USB printers via
ipp-usb. - Driverless scanning is supported through
sane-esclandsane-airscan. - A new generic
opencommand is available as an alias forxdg-openorrun-mailcap. - Systemd defaults to cgroup v2.
- Persistent systemd journal storage is enabled by default.
- Kernel support for exFAT is included and used by default.
- Fcitx 5 is introduced as the new input method framework.
- Bazel is available in Debian as
bazel-bootstrap.
Known Issues
- The rescue boot option is unusable without a root password unless
SYSTEMD_SULOGIN_FORCE=1is configured. - 32-bit Xen PV guests are no longer supported.
- XFS no longer supports the
barrierandnobarriermount options. - Some Intel microcode updates may break Wi-Fi or cause boot hangs on affected systems.
- Exim 4.94 introduces tainted-data handling that can break older configurations.
- The release notes list multiple known severe bugs affecting packages such as
cron,fail2ban,openssh-server,mariadb-server-10.5, and others.
Hints
- Upgrade from Debian 10 (buster) only; direct upgrades from older releases are not supported.
- Use
apt upgrade --without-new-pkgsfor a minimal upgrade beforeapt full-upgradewhen needed. - Record the upgrade session with
scriptto aid troubleshooting. - Update APT sources from
buster/updatestobullseye-security. - Install a
linux-image-*metapackage before rebooting after the upgrade. - Back up
/etc,/var/lib/dpkg, and/var/lib/apt/extended_statesbefore upgrading. - For OpenStack nodes, cgroup v1 may need to be restored with kernel command-line parameters.
- If using NIS/NIS+, install
libnss-nisandlibnss-nisplusafter upgrading.
Links
-
Debian 11 bullseye release notes
https://www.debian.org/releases/bullseye/releasenotes
-
Debian 11 installer and installation guide
https://www.debian.org/releases/bullseye/debian-installer/
Product Information
Vendor: Debian
Product: Server
Product type: Software
Application category: Utilities
Platform: Linux
Variant: 11 Bullseye
Vendor release date: Aug 31, 2024
Original release notes: View on vendor site
Published on updatealert.io: Jul 31, 2026