[Git][security-tracker-team/security-tracker][master] Add CVE-2020-27218/jetty9

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dd993c2 by Salvatore Bonaccorso at 2020-12-01T07:43:43+01:00 Add CVE-2020-27218/jetty9 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Fix fixed version of CVE-2020-15157 in docker.io

2020-11-30 Thread Shengjing Zhu
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: 92d61f26 by Shengjing Zhu at 2020-12-01T12:24:18+08:00 Fix fixed version of CVE-2020-15157 in docker.io - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update CVE-2020-15257 and CVE-2020-15157 info

2020-11-30 Thread Shengjing Zhu
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e994284 by Shengjing Zhu at 2020-12-01T12:14:22+08:00 Update CVE-2020-15257 and CVE-2020-15157 info - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: claim pdfresurrect in dla-needed.txt

2020-11-30 Thread Roberto C . Sánchez
: = data/dla-needed.txt = @@ -109,7 +109,7 @@ pacemaker (Markus Koschany) NOTE: 20201130: I will ask the other bug reporters for feedback and testing NOTE: 20201130: in #974563. The update itself looks good to me. -- -pdfresurrect +pdfresurrect

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2474-1 for musl

2020-11-30 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 05f78422 by Utkarsh Gupta at 2020-12-01T03:57:27+05:30 Reserve DLA-2474-1 for musl - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Update referenced PR for CVE-2020-26160

2020-11-30 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: 53105eb4 by Brian May at 2020-12-01T08:38:26+11:00 Update referenced PR for CVE-2020-26160 PR #286 is much cleaner then PR #426 and is what the unstable package used. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2473-1 for vips

2020-11-30 Thread Adrian Bunk
= data/dla-needed.txt = @@ -172,8 +172,6 @@ spice-vdagent (Abhijith PA) spip NOTE: Low priority for us. sec team did DSA-4798-1 (abhijith) -- -vips (Adrian Bunk) --- webcit (Markus Koschany) NOTE: 20201130: Requested more

[Git][security-tracker-team/security-tracker][master] Claim golang-github-dgrijalva-jwt-go

2020-11-30 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: 2350f914 by Brian May at 2020-12-01T08:27:09+11:00 Claim golang-github-dgrijalva-jwt-go - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-15257/containerd

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5ff4bfb2 by Salvatore Bonaccorso at 2020-11-30T22:11:45+01:00 Add CVE-2020-15257/containerd - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2020-25663

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ecc4bbd2 by Salvatore Bonaccorso at 2020-11-30T21:57:19+01:00 Update information for CVE-2020-25663 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-12695/minidlna

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 47d2b3f9 by Salvatore Bonaccorso at 2020-11-30T21:25:47+01:00 Add CVE-2020-12695/minidlna - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-28926/minidlna

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e82fd33d by Salvatore Bonaccorso at 2020-11-30T21:24:11+01:00 Add CVE-2020-28926/minidlna - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process more NFUs

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 29de7608 by Salvatore Bonaccorso at 2020-11-30T21:23:38+01:00 Process more NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process several NFUs

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2d1452e9 by Salvatore Bonaccorso at 2020-11-30T21:14:42+01:00 Process several NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2207786c by security tracker role at 2020-11-30T20:10:26+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2472-1 for mutt

2020-11-30 Thread Adrian Bunk
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: e563821f by Adrian Bunk at 2020-11-30T21:09:31+02:00 Reserve DLA-2472-1 for mutt - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-27815/linux

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e738e32 by Salvatore Bonaccorso at 2020-11-30T19:40:22+01:00 Add CVE-2020-27815/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] webkit2gtk upstream advisory WSA-2020-0009

2020-11-30 Thread Alberto Garcia
Alberto Garcia pushed to branch master at Debian Security Tracker / security-tracker Commits: f6a216e9 by Alberto Garcia at 2020-11-30T19:15:02+01:00 webkit2gtk upstream advisory WSA-2020-0009 - - - - - 2 changed files: - data/CVE/list - data/DSA/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2020-11-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b61d35b by Moritz Muehlenhoff at 2020-11-30T18:56:10+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] ceph fixed in sid

2020-11-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e972247a by Moritz Muehlenhoff at 2020-11-30T18:43:50+01:00 ceph fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] DLA-1604-1 never fixed CVE-2018-19787

2020-11-30 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 78343d68 by Emilio Pozuelo Monfort at 2020-11-30T14:41:00+01:00 DLA-1604-1 never fixed CVE-2018-19787 There was no patch system so the patch didnt get applied. Update the CVE list

[Git][security-tracker-team/security-tracker][master] wpa fixed in sid

2020-11-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 62c93712 by Moritz Muehlenhoff at 2020-11-30T11:46:27+01:00 wpa fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] imagemagick/CVE-2020-25664: link with CVE-2020-27752

2020-11-30 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 7dab0d85 by Sylvain Beucler at 2020-11-30T11:25:34+01:00 imagemagick/CVE-2020-25664: link with CVE-2020-27752 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] one IM issue n/a, one ignored

2020-11-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 535f1d9f by Moritz Muehlenhoff at 2020-11-30T11:18:04+01:00 one IM issue n/a, one ignored - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2020-25663/imagemagick: stretch not-affected

2020-11-30 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 94a16817 by Sylvain Beucler at 2020-11-30T11:13:03+01:00 CVE-2020-25663/imagemagick: stretch not-affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2020-25676/imagemagick: stretch ignored

2020-11-30 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: a0699360 by Sylvain Beucler at 2020-11-30T09:57:35+01:00 CVE-2020-25676/imagemagick: stretch ignored - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reclaim vdagent, update note

2020-11-30 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 2d56fc94 by Abhijith PA at 2020-11-30T14:27:16+05:30 Reclaim vdagent, update note - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-28361 as no-dsa for stretch

2020-11-30 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: bdc15b88 by Abhijith PA at 2020-11-30T14:19:43+05:30 Mark CVE-2020-28361 as no-dsa for stretch - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-11-30 Thread Holger Levsen
-needed.txt Changes: = data/dla-needed.txt = @@ -27,7 +27,7 @@ ansible (Markus Koschany) NOTE: 20201130: Not everything is clear and obvious thus fixing some CVE is NOTE: 20201130: better than continue to ignore all

[Git][security-tracker-team/security-tracker][master] automatic update

2020-11-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1554b910 by security tracker role at 2020-11-30T08:10:21+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list