[Git][security-tracker-team/security-tracker][master] Add CVE-2021-3743/linux

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a8847a08 by Salvatore Bonaccorso at 2021-08-30T07:16:41+02:00 Add CVE-2021-3743/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] DLA 2750-1: Remove listing of CVE-2021-31291

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1921b26f by Salvatore Bonaccorso at 2021-08-30T06:14:19+02:00 DLA 2750-1: Remove listing of CVE-2021-31291 This was a rejected CVE and a duplicate of CVE-2021-29457. - - - - - 1 changed

[Git][security-tracker-team/security-tracker][master] Remove no-dsa tagged entries which got an update for exiv2 in stretch

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: df1276bf by Salvatore Bonaccorso at 2021-08-30T06:13:40+02:00 Remove no-dsa tagged entries which got an update for exiv2 in stretch - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Mark CVE-2020-18976/tcpreplay as no-dsa for stretch

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8e9d3735 by Salvatore Bonaccorso at 2021-08-30T06:09:18+02:00 Mark CVE-2020-18976/tcpreplay as no-dsa for stretch As there is not a suitbased possibiltiy of marking unimportant severity issue.

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2750-1 for exiv2

2021-08-29 Thread Utkarsh Gupta (@utkarsh)
- security update {CVE-2019-20326} [stretch] - gthumb 3:3.4.4.1-5+deb9u2 = data/dla-needed.txt = @@ -23,10 +23,6 @@ btrbk (Thorsten Alteholz) cacti (Roberto C. Sánchez) NOTE: 20210829: not really sure whether

[Git][security-tracker-team/security-tracker][master] Take qtbase-opensource-src and add notes

2021-08-29 Thread Utkarsh Gupta (@utkarsh)
: = data/dla-needed.txt = @@ -60,7 +60,8 @@ openssl (Thorsten Alteholz) openssl1.0 (Thorsten Alteholz) -- plib - NOTE: 20210829: no fix yet + NOTE: 20210829: no fix yet. (thorsten) + NOTE: 20210829: upstream bug mentions that it might never get fixed. (utkarsh

[Git][security-tracker-team/security-tracker][master] CVE-2021-31811,CVE-2021-31812,libpdfbox2-java: Fixed in unstable

2021-08-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 977b4a6a by Markus Koschany at 2021-08-30T00:32:59+02:00 CVE-2021-31811,CVE-2021-31812,libpdfbox2-java: Fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 5 commits: mark CVE-2021-32740 as no-dsa for Stretch

2021-08-29 Thread Thorsten Alteholz (@alteholz)
= @@ -59,13 +59,20 @@ openssl (Thorsten Alteholz) -- openssl1.0 (Thorsten Alteholz) -- +plib + NOTE: 20210829: no fix yet +-- python-babel NOTE: 20210617: CVE-2021-20095 withdrawn, cf. 251b6e33 and #987824 (abhijith) NOTE: 20210620: http://people.debian.org

[Git][security-tracker-team/security-tracker][master] 5 commits: mark CVE-2020-18976 as unfixed and unimportant for Stretch

2021-08-29 Thread Thorsten Alteholz (@alteholz)
= data/dla-needed.txt = @@ -18,6 +18,8 @@ ansible NOTE: 20210411: after that LTS. (apo) NOTE: 20210426: https://people.debian.org/~apo/lts/ansible/ -- +btrbk (Thorsten Alteholz) +-- cacti (Roberto C. Sánchez) NOTE: 20210829

[Git][security-tracker-team/security-tracker][master] 8 commits: mark CVE-2021-39272 as no-dsa for Stretch

2021-08-29 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: e4218a6c by Thorsten Alteholz at 2021-08-29T23:30:50+02:00 mark CVE-2021-39272 as no-dsa for Stretch - - - - - e419aedf by Thorsten Alteholz at 2021-08-29T23:32:12+02:00 mark CVE-2021-38559 as

[Git][security-tracker-team/security-tracker][master] dla: really take wireshark

2021-08-29 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 44a195a9 by Adrian Bunk at 2021-08-30T00:05:04+03:00 dla: really take wireshark - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] dla: take wireshark

2021-08-29 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: cfda9ed6 by Adrian Bunk at 2021-08-29T23:13:32+03:00 dla: take wireshark - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] automatic update

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25df17e7 by security tracker role at 2021-08-29T20:10:22+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2021-33880/python-websockets

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 37898896 by Salvatore Bonaccorso at 2021-08-29T21:31:38+02:00 Add fixed version for CVE-2021-33880/python-websockets - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add libssh to dsa-needed list

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d124e20 by Salvatore Bonaccorso at 2021-08-29T21:27:23+02:00 Add libssh to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: claim cacti

2021-08-29 Thread @roberto
-needed.txt = @@ -18,7 +18,7 @@ ansible NOTE: 20210411: after that LTS. (apo) NOTE: 20210426: https://people.debian.org/~apo/lts/ansible/ -- -cacti +cacti (Roberto C. Sánchez) NOTE: 20210829: not really sure whether affected, please recheck -- exiv2 (Utkarsh

[Git][security-tracker-team/security-tracker][master] 3 commits: add cacti

2021-08-29 Thread Thorsten Alteholz (@alteholz)
) = data/dla-needed.txt = @@ -18,6 +18,9 @@ ansible NOTE: 20210411: after that LTS. (apo) NOTE: 20210426: https://people.debian.org/~apo/lts/ansible/ -- +cacti + NOTE: 20210829: not really sure whether affected, please

[Git][security-tracker-team/security-tracker][master] Add one NFU

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 33bcbeed by Salvatore Bonaccorso at 2021-08-29T10:22:59+02:00 Add one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: daec1bd1 by security tracker role at 2021-08-29T08:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for four openexr issues via unstable

2021-08-29 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 35fba623 by Salvatore Bonaccorso at 2021-08-29T10:05:44+02:00 Track fixed version for four openexr issues via unstable - - - - - 1 changed file: - data/CVE/list Changes: