[Git][security-tracker-team/security-tracker][master] Mark CVE-2021-4112 as NFU

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38d78b48 by Salvatore Bonaccorso at 2021-12-15T08:17:35+01:00 Mark CVE-2021-4112 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2021-4083 as well pending for src:linux upload in bullseye-pu

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 98044309 by Salvatore Bonaccorso at 2021-12-15T08:16:39+01:00 CVE-2021-4083 as well pending for src:linux upload in bullseye-pu - - - - - 1 changed file: - data/next-point-update.txt

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4083/linux

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c462015 by Salvatore Bonaccorso at 2021-12-15T08:15:27+01:00 Add CVE-2021-4083/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add one additional reference for CVE-2021-45046

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ab597c72 by Salvatore Bonaccorso at 2021-12-15T08:02:45+01:00 Add one additional reference for CVE-2021-45046 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2021-45046,apache-log4j2: Fixed in unstable

2021-12-14 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ab48b15b by Markus Koschany at 2021-12-15T03:13:05+01:00 CVE-2021-45046,apache-log4j2: Fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 4 commits: mark CVE-2021-4104 as no-dsa

2021-12-14 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 10ac00f8 by Thorsten Alteholz at 2021-12-15T00:20:13+01:00 mark CVE-2021-4104 as no-dsa - - - - - a55eb8ba by Thorsten Alteholz at 2021-12-15T00:23:06+01:00 add xorg-server - - - - - fd7d100b by

[Git][security-tracker-team/security-tracker][master] Triage CVE-2021-45046,apache-log4j2 as not-affected.

2021-12-14 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3891c020 by Markus Koschany at 2021-12-14T23:52:38+01:00 Triage CVE-2021-45046,apache-log4j2 as not-affected. The JndiLookup class has been removed already. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-44528/rails

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: effea7e0 by Salvatore Bonaccorso at 2021-12-14T23:07:51+01:00 Add CVE-2021-44528/rails - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2021-45046/apache-log4j2

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e4a73fbc by Salvatore Bonaccorso at 2021-12-14T22:53:58+01:00 Add Debian bug reference for CVE-2021-45046/apache-log4j2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-40882/piwigo

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bd4d04ad by Salvatore Bonaccorso at 2021-12-14T21:55:51+01:00 Add CVE-2021-40882/piwigo - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5416ba4b by Salvatore Bonaccorso at 2021-12-14T21:53:06+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 618b61a4 by Salvatore Bonaccorso at 2021-12-14T21:43:09+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-45046/apache-log4j2

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: da9add2e by Salvatore Bonaccorso at 2021-12-14T21:27:06+01:00 Add CVE-2021-45046/apache-log4j2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2021-44847/libtoxcore

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 26160248 by Salvatore Bonaccorso at 2021-12-14T21:22:00+01:00 Update information for CVE-2021-44847/libtoxcore - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
RESERVED -CVE-2021-4044 - RESERVED +CVE-2021-4044 (Internally libssl in OpenSSL calls X509_verify_cert() on the client si ...) [experimental] - openssl - openssl (Vulnerable code not present) NOTE: https://www.openssl.org/news/secadv/20211214.txt @@ -1788,48 +1827,48

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2021-4076/tang

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c097254 by Salvatore Bonaccorso at 2021-12-14T20:58:01+01:00 Update status for CVE-2021-4076/tang - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4076/tang

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 21e1ce3c by Salvatore Bonaccorso at 2021-12-14T20:53:18+01:00 Add CVE-2021-4076/tang - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add xorg-server to dsa-needed list

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 82f71a41 by Salvatore Bonaccorso at 2021-12-14T20:48:37+01:00 Add xorg-server to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2021-22004/salt: windows-specific

2021-12-14 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 519e4db5 by Sylvain Beucler at 2021-12-14T18:38:01+01:00 CVE-2021-22004/salt: windows-specific - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] mark openssl/experimental as unfixed

2021-12-14 Thread Moritz Muehlenhoff (@jmm)
] - openssl + - openssl (Vulnerable code not present) NOTE: https://www.openssl.org/news/secadv/20211214.txt CVE-2021-4043 RESERVED View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c0c9dd8604a21adbeb1ed904c0503387240780f7 -- View

[Git][security-tracker-team/security-tracker][master] new openssl issue

2021-12-14 Thread Moritz Muehlenhoff (@jmm)
/secadv/20211214.txt CVE-2021-4043 RESERVED CVE-2021-4042 View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/130812991b5f4147a359044eba4c19049c699e58 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit

[Git][security-tracker-team/security-tracker][master] CVE-2021-31607/salt: reference affected versions and patch

2021-12-14 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 30b6ff60 by Sylvain Beucler at 2021-12-14T18:19:50+01:00 CVE-2021-31607/salt: reference affected versions and patch - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add commit links for xserver fixes

2021-12-14 Thread Julien Cristau (@jcristau)
Julien Cristau pushed to branch master at Debian Security Tracker / security-tracker Commits: 2394d3f2 by Julien Cristau at 2021-12-14T15:43:31+01:00 Add commit links for xserver fixes - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] xwayland fixes in unstable

2021-12-14 Thread Julien Cristau (@jcristau)
Julien Cristau pushed to branch master at Debian Security Tracker / security-tracker Commits: f942e399 by Julien Cristau at 2021-12-14T15:39:18+01:00 xwayland fixes in unstable - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] xwayland was split out of xorg-server after bullseye

2021-12-14 Thread Julien Cristau (@jcristau)
Julien Cristau pushed to branch master at Debian Security Tracker / security-tracker Commits: f9c45117 by Julien Cristau at 2021-12-14T15:12:47+01:00 xwayland was split out of xorg-server after bullseye - - - - - 2 changed files: - data/CVE/list - data/embedded-code-copies Changes:

[Git][security-tracker-team/security-tracker][master] xorg-server fixes

2021-12-14 Thread Julien Cristau (@jcristau)
Julien Cristau pushed to branch master at Debian Security Tracker / security-tracker Commits: f45ba9d4 by Julien Cristau at 2021-12-14T14:56:21+01:00 xorg-server fixes - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark CVE-2021-4047 as NFU

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cafa90e0 by Salvatore Bonaccorso at 2021-12-14T09:14:00+01:00 Mark CVE-2021-4047 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-3864/linux

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 954d17d2 by Salvatore Bonaccorso at 2021-12-14T09:12:30+01:00 Add CVE-2021-3864/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2021-1048/linux

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 71c54260 by Salvatore Bonaccorso at 2021-12-14T09:10:33+01:00 Update status for CVE-2021-1048/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dae93c3d by security tracker role at 2021-12-14T08:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-1048/linux

2021-12-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 94406ea1 by Salvatore Bonaccorso at 2021-12-14T09:03:48+01:00 Add CVE-2021-1048/linux - - - - - 1 changed file: - data/CVE/list Changes: =