Re: [Git][security-tracker-team/security-tracker][master] Reserve DLA-2936-1 for libgit2

2022-03-22 Thread Utkarsh Gupta
Hello, On Tue, Mar 22, 2022 at 12:01 PM Emilio Pozuelo Monfort wrote: > I see this finally went through. Do you know what was the issue? In case it > happens again in the future to someone else. This was an interesting case of me building libgit2 in an LXD VM (yes, you can create a VM via LXD!

[SECURITY] [DLA 2961-1] thunderbird security update

2022-03-22 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-2961-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort March 22, 2022

[SECURITY] [DLA 2960-1] apache2 security update

2022-03-22 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-2960-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort March 22, 2022

Accepted apache2 2.4.25-3+deb9u13 (source) into oldoldstable

2022-03-22 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Fri, 18 Mar 2022 13:54:25 +0100 Source: apache2 Architecture: source Version: 2.4.25-3+deb9u13 Distribution: stretch-security Urgency: medium Maintainer: Debian Apache Maintainers Changed-By: Emilio Pozuelo Monfort Changes:

Accepted thunderbird 1:91.7.0-2~deb9u1 (source) into oldoldstable

2022-03-22 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Tue, 22 Mar 2022 07:48:48 +0100 Source: thunderbird Architecture: source Version: 1:91.7.0-2~deb9u1 Distribution: stretch-security Urgency: medium Maintainer: Carsten Schoenert Changed-By: Emilio Pozuelo Monfort Changes:

Re: [Git][security-tracker-team/security-tracker][master] Reserve DLA-2936-1 for libgit2

2022-03-22 Thread Emilio Pozuelo Monfort
On 11/03/2022 14:22, Utkarsh Gupta wrote: Hi Emilio, On Fri, Mar 11, 2022 at 4:56 AM Emilio Pozuelo Monfort wrote: Friendly ping about this update. I see the DLA was reserved but I haven't seen the package uploaded yet (and thus the announcement sent out). Is there any blocker with the