[Git][security-tracker-team/security-tracker][master] intel-microcode fixed in sid

2022-08-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7607fd1c by Moritz Mühlenhoff at 2022-08-19T23:45:24+02:00 intel-microcode fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] add webkit/chrome references

2022-08-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7225f8f4 by Moritz Mühlenhoff at 2022-08-19T23:24:31+02:00 add webkit/chrome references - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] bullseye triage

2022-08-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e3673978 by Moritz Mühlenhoff at 2022-08-19T23:11:47+02:00 bullseye triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 785731e9 by Salvatore Bonaccorso at 2022-08-19T22:43:46+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-2889/vim

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fa33734c by Salvatore Bonaccorso at 2022-08-19T22:37:37+02:00 Add CVE-2022-2889/vim - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process one NFU

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c1bcd09c by Salvatore Bonaccorso at 2022-08-19T22:30:00+02:00 Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-37781

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 150f72d0 by Salvatore Bonaccorso at 2022-08-19T22:26:10+02:00 Add Debian bug reference for CVE-2022-37781 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c56aecdc by security tracker role at 2022-08-19T20:10:22+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-36148

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0ad18fdc by Salvatore Bonaccorso at 2022-08-19T22:02:21+02:00 Add Debian bug reference for CVE-2022-36148 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage wkhtmltopdf for buster LTS (CVE-2020-21365)

2022-08-19 Thread Chris Lamb (@lamby)
: = data/dla-needed.txt = @@ -107,6 +107,9 @@ sox NOTE: 20220818: Programming language: C. NOTE: 20220818: Requires some investigation; see #1012138 etc. -- +wkhtmltopdf + NOTE: 20220819: Programming language: C++. +-- zlib (Emilio

[Git][security-tracker-team/security-tracker][master] Mark CVE-2022-36148/fdkaac as no-dsa for bullseye

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cce87991 by Salvatore Bonaccorso at 2022-08-19T21:47:45+02:00 Mark CVE-2022-36148/fdkaac as no-dsa for bullseye - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2022-37781/fdkaac as no-dsa (minor and contrib not supported)

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f8d0d336 by Salvatore Bonaccorso at 2022-08-19T21:46:50+02:00 Mark CVE-2022-37781/fdkaac as no-dsa (minor and contrib not supported) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage exiv2 for buster LTS (CVE-2020-19716)

2022-08-19 Thread Chris Lamb (@lamby)
: = data/dla-needed.txt = @@ -29,6 +29,10 @@ asterisk (Markus Koschany) curl (Markus Koschany) NOTE: 20220802: Programming language: C. -- +exiv2 + NOTE: 20220819: Programming language: C++. + NOTE: 20220819: https://github.com/Exiv2/exiv2

[Git][security-tracker-team/security-tracker][master] additional firefox reference

2022-08-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ebb046ec by Moritz Mühlenhoff at 2022-08-19T21:38:32+02:00 additional firefox reference - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] connman fixed in sid

2022-08-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b125fec by Moritz Mühlenhoff at 2022-08-19T21:36:04+02:00 connman fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reference cloned bug for CVE-2022-2119 and CVE-2022-2120

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b2fe699 by Salvatore Bonaccorso at 2022-08-19T21:32:48+02:00 Reference cloned bug for CVE-2022-2119 and CVE-2022-2120 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update references for CVE-2022-29360/rainloop

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 97ea0976 by Salvatore Bonaccorso at 2022-08-19T21:21:00+02:00 Update references for CVE-2022-29360/rainloop - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark two of the dcmtk issues as unfixed

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 12f897de by Salvatore Bonaccorso at 2022-08-19T21:10:46+02:00 Mark two of the dcmtk issues as unfixed The CVE reference is missleading as they state that the 3.6.7 release will fix all three.

[Git][security-tracker-team/security-tracker][master] Note that Stefano Rivera proposed debdiff for bullseye for kicad

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a1b9c9e3 by Salvatore Bonaccorso at 2022-08-19T15:55:28+02:00 Note that Stefano Rivera proposed debdiff for bullseye for kicad - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] I've already prepared kicad

2022-08-19 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: dcff1b5e by Stefano Rivera at 2022-08-19T15:51:47+02:00 Ive already prepared kicad - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-2121: Add reference to upstream issue and tag for commit

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c513c995 by Salvatore Bonaccorso at 2022-08-19T15:25:03+02:00 CVE-2022-2121: Add reference to upstream issue and tag for commit - - - - - 445b140e by Salvatore Bonaccorso at

[Git][security-tracker-team/security-tracker][master] 2 commits: Mark CVE-2022-21{19,20,21}/dcmtk as fixed in 3.6.7-1

2022-08-19 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 049fe9cd by Emilio Pozuelo Monfort at 2022-08-19T11:56:58+02:00 Mark CVE-2022-21{19,20,21}/dcmtk as fixed in 3.6.7-1 - - - - - 0885ef5d by Emilio Pozuelo Monfort at 2022-08-19T12:17:53+02:00

[Git][security-tracker-team/security-tracker][master] Add notes on CVE-2021-32862

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e6d58356 by Salvatore Bonaccorso at 2022-08-19T11:37:02+02:00 Add notes on CVE-2021-32862 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some more NFUs

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 534efd03 by Salvatore Bonaccorso at 2022-08-19T11:35:05+02:00 Process some more NFUs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Lower some severities

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dcdf771 by Salvatore Bonaccorso at 2022-08-19T11:31:00+02:00 Lower some severities - - - - - a8adc525 by Salvatore Bonaccorso at 2022-08-19T11:32:34+02:00 Process some NFUs - - - - - 1

[Git][security-tracker-team/security-tracker][master] CVE-2020-27790 && CVE-2020-27788/upx-ucl 3.96-1

2022-08-19 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f2c7153 by Neil Williams at 2022-08-19T10:26:01+01:00 CVE-2020-27790 CVE-2020-27788/upx-ucl 3.96-1 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Process an NFU

2022-08-19 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: a1eaad5a by Neil Williams at 2022-08-19T10:15:13+01:00 Process an NFU - - - - - e3a4d500 by Neil Williams at 2022-08-19T10:20:20+01:00 CVE-2020-27787/upx-ucl 3.96-1 - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] CVE-2022-35133/cherrytree add Suse bug reference

2022-08-19 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: f95558f4 by Neil Williams at 2022-08-19T10:02:12+01:00 CVE-2022-35133/cherrytree add Suse bug reference - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9d1f1119 by Salvatore Bonaccorso at 2022-08-19T10:40:47+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add three new tcpreplay issues

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ef6c02a8 by Salvatore Bonaccorso at 2022-08-19T10:30:38+02:00 Add three new tcpreplay issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add three new libjpeg issues

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a8ded8b3 by Salvatore Bonaccorso at 2022-08-19T10:26:23+02:00 Add three new libjpeg issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-36599/ruby-omniauth

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a61b74b7 by Salvatore Bonaccorso at 2022-08-19T10:23:50+02:00 Add CVE-2020-36599/ruby-omniauth - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 37c6d502 by security tracker role at 2022-08-19T08:10:27+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-2873/linux

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 92979641 by Salvatore Bonaccorso at 2022-08-19T10:00:10+02:00 Update information for CVE-2022-2873/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-2873/linux

2022-08-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a55794a by Salvatore Bonaccorso at 2022-08-19T09:52:04+02:00 Add CVE-2022-2873/linux - - - - - 1 changed file: - data/CVE/list Changes: =