Re: (semi-)automatic unclaim of packages with more than 2 weeks of inactivity (and missing DLAs on www.do)

2021-04-26 Thread Lynoure Braakman
On Monday 26 April 2021 17:39:01 CEST Lynoure Braakman wrote:

> Four DLAs have been reserved and haven't been published yet:
>  DLA 2637-1 (23 Apr 2021)  (drupal7)
>  DLA 2636-1 (23 Apr 2021) (pjproject)
>  DLA 2629-1 (18 Apr 2021) (libebml)
>  DLA 2628-1 (17 Apr 2021) (python2.7)
>  DLA 2618-2 (16 Apr 2021) (smarty3)
>  DLA 2610-1 (29 Mar 2021) (linux-4.19)

All you can count, and I don't always remember to edit the things I copy 
paste, so:

s/Four/Following/


-- 
Lynoure Braakman 




(semi-)automatic unclaim of packages with more than 2 weeks of inactivity (and missing DLAs on www.do)

2021-04-26 Thread Lynoure Braakman
hi, 

As I am gradually taking coordination duties over fro Holger, here's my first 
time doing these mails.

Nobody claimed 4 packages or more.

Nothing was unclaimed for LTS or ELTS.

Four DLAs have been reserved and haven't been published yet:
 DLA 2637-1 (23 Apr 2021)  (drupal7)
 DLA 2636-1 (23 Apr 2021) (pjproject)
 DLA 2629-1 (18 Apr 2021) (libebml)
 DLA 2628-1 (17 Apr 2021) (python2.7)
 DLA 2618-2 (16 Apr 2021) (smarty3)
 DLA 2610-1 (29 Mar 2021) (linux-4.19)


Have a splendid week,

-- 
Lynoure Braakman




[SECURITY] [DLA 2640-1] gst-plugins-good1.0 security update

2021-04-26 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

- -
Debian LTS Advisory DLA-2640-1debian-...@lists.debian.org
https://www.debian.org/lts/security/   Emilio Pozuelo Monfort
April 26, 2021https://wiki.debian.org/LTS
- -

Package: gst-plugins-good1.0
Version: 1.10.4-1+deb9u1
CVE ID : CVE-2021-3497
Debian Bug : 986910

A use-after-free vulnerability was found in the Matroska plugin of the
the GStreamer media framework, which may result in denial of service or
potentially the execution of arbitrary code if a malformed media file
is opened.

For Debian 9 stretch, this problem has been fixed in version
1.10.4-1+deb9u1.

We recommend that you upgrade your gst-plugins-good1.0 packages.

For the detailed security status of gst-plugins-good1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-good1.0

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-BEGIN PGP SIGNATURE-
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=zXVQ
-END PGP SIGNATURE-