[Git][security-tracker-team/security-tracker][master] 2 commits: Reference upstream commit for CVE-2020-6062

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d72b7daf by Salvatore Bonaccorso at 2020-02-20T08:27:30+01:00 Reference upstream commit for CVE-2020-6062 - - - - - 80600802 by Salvatore Bonaccorso at 2020-02-20T08:27:56+01:00 Reference

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-606{1,2}/coturn

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 67c5d6ba by Salvatore Bonaccorso at 2020-02-20T08:26:02+01:00 Add CVE-2020-606{1,2}/coturn - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process CVE-2020-8953 as NFU

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d9f0c546 by Salvatore Bonaccorso at 2020-02-20T08:14:35+01:00 Process CVE-2020-8953 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-19794/golang-github-miekg-dns

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: aa6d254a by Salvatore Bonaccorso at 2020-02-20T07:24:08+01:00 Add fixed version for CVE-2019-19794/golang-github-miekg-dns - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-12825/gitlab

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ffdcbf25 by Salvatore Bonaccorso at 2020-02-20T07:18:33+01:00 Add CVE-2019-12825/gitlab - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process more NFUs

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ee063e8d by Salvatore Bonaccorso at 2020-02-19T21:30:12+01:00 Process more NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b27e5a29 by Salvatore Bonaccorso at 2020-02-19T21:23:45+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Revert "This old issue is updated to describe jessie too."

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 06dbeb7c by Salvatore Bonaccorso at 2020-02-19T21:19:45+01:00 Revert This old issue is updated to describe jessie too. This reverts commit bd3aa6c40e5a64bcfaafcde394af7f08cebc0b66. Only the

[Git][security-tracker-team/security-tracker][master] 2 commits: Noted that intel-microcode is postponed in buster and strech. The same can be done for LTS.

2020-02-19 Thread Ola Lundqvist
-- intel-microcode + NOTE: 20200219: Postponed in stretch and buster. We can do the same for jessie. (ola) -- jackson-databind NOTE: 20200105: Can be postponed again. (apo) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare

[Git][security-tracker-team/security-tracker][master] Clear annotations for CVE-2013-5581

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8321f8a8 by Salvatore Bonaccorso at 2020-02-19T21:12:19+01:00 Clear annotations for CVE-2013-5581 The assigning CNA has withdrawn here the assignment as further investigation showed there is

[Git][security-tracker-team/security-tracker][master] automatic update

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 05714578 by security tracker role at 2020-02-19T20:10:27+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: claim nodejs

2020-02-19 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: e599ffd9 by Sylvain Beucler at 2020-02-19T19:54:52+01:00 dla: claim nodejs - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2110-1 for netty-3.9

2020-02-19 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 4589c36c by Sylvain Beucler at 2020-02-19T18:48:56+01:00 Reserve DLA-2110-1 for netty-3.9 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2109-1 for netty

2020-02-19 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: ac0aeee9 by Sylvain Beucler at 2020-02-19T18:47:57+01:00 Reserve DLA-2109-1 for netty - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d8755c43 by Salvatore Bonaccorso at 2020-02-19T16:59:37+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-20477/pyyaml

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c3f2f40 by Salvatore Bonaccorso at 2020-02-19T16:51:03+01:00 Add CVE-2019-20477/pyyaml - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process CVE-2019-3699 as NFU

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ef53d87 by Salvatore Bonaccorso at 2020-02-19T16:39:27+01:00 Process CVE-2019-3699 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: claim xen in dla-needed.txt

2020-02-19 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 43425416 by Roberto C. Sánchez at 2020-02-19T09:23:20-05:00 LTS: claim xen in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 3 commits: add ansible

2020-02-19 Thread Thorsten Alteholz
this list is updated have a look at https://wiki.debian.org/LTS/Development#Triage_new_security_issues +-- +ansible + NOTE: 20200219: no upstream fixes yet -- cloud-init (Utkarsh Gupta) -- +collabtive (Thorsten Alteholz) +-- ibus NOTE: 20191210: Requires glib2.0 to be patched also. NOTE

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2015-9543/nova

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 98c90383 by Salvatore Bonaccorso at 2020-02-19T10:19:15+01:00 Add Debian bug reference for CVE-2015-9543/nova - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2015-9543/nova

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0dba2a27 by Salvatore Bonaccorso at 2020-02-19T09:27:51+01:00 Add CVE-2015-9543/nova - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update NOT-FOR-US note for CVE-2011-2054

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 81dab430 by Salvatore Bonaccorso at 2020-02-19T09:15:54+01:00 Update NOT-FOR-US note for CVE-2011-2054 Originally it was planned to actually reject CVE-2011-2054 because at some point it was

[Git][security-tracker-team/security-tracker][master] automatic update

2020-02-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f753b805 by security tracker role at 2020-02-19T08:10:23+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DSA-4629-1 for python-django (CVE-2020-7471)

2020-02-19 Thread Sebastien Delafond
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: 135fa4a7 by Sébastien Delafond at 2020-02-19T09:07:44+01:00 Reserve DSA-4629-1 for python-django (CVE-2020-7471) - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: