[Git][security-tracker-team/security-tracker][master] 4 commits: CVE-2022-41765,mediawiki: Link to fixing commit

2022-10-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 30a504e0 by Markus Koschany at 2022-10-11T20:34:27+02:00 CVE-2022-41765,mediawiki: Link to fixing commit - - - - - 705cac49 by Markus Koschany at 2022-10-11T20:40:35+02:00 CVE-2022-41767,mediawiki:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-3358/openssl

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
] - openssl (Only affects 3.x) [buster] - openssl (Only affects 3.x) NOTE: https://www.openssl.org/news/secadv/20221011.txt View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7f43eed344debdf4d61ecf0689fa9028ec5e23cb -- View it on GitLab

[Git][security-tracker-team/security-tracker][master] Process several NFUs

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a7f3932d by Salvatore Bonaccorso at 2022-10-11T23:05:36+02:00 Process several NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] reported xpdf/CVE-2022-24106 to poppler upstream

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ff8fccb1 by Moritz Muehlenhoff at 2022-10-11T22:59:22+02:00 reported xpdf/CVE-2022-24106 to poppler upstream - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new libreoffice issue

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c12148c by Moritz Muehlenhoff at 2022-10-11T22:58:55+02:00 new libreoffice issue - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-37616/node-xmldom

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 639e02ab by Salvatore Bonaccorso at 2022-10-11T22:52:12+02:00 Add Debian bug reference for CVE-2022-37616/node-xmldom - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for erlang issue

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d7eafe8 by Salvatore Bonaccorso at 2022-10-11T22:51:02+02:00 Track fixed version via unstable for erlang issue This follows from the upstream announce on the fixed verison for the 24.x

[Git][security-tracker-team/security-tracker][master] Add fixing commit references for node-xmldom issue

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0ed05ebc by Salvatore Bonaccorso at 2022-10-11T22:35:07+02:00 Add fixing commit references for node-xmldom issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Move tracking for CVE-2022-33749 to src:xen-api

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f598a353 by Salvatore Bonaccorso at 2022-10-11T22:26:34+02:00 Move tracking for CVE-2022-33749 to src:xen-api Link: https://github.com/xapi-project/xen-api - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Mark CVE-2022-24697 as NFU

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e4d707d9 by Salvatore Bonaccorso at 2022-10-11T22:13:02+02:00 Mark CVE-2022-24697 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8ddd9937 by Salvatore Bonaccorso at 2022-10-11T22:11:39+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bc70e37d by security tracker role at 2022-10-11T20:10:26+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reference additional commit for CVE-2022-39176/bluez

2022-10-11 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 3dae0fad by Emilio Pozuelo Monfort at 2022-10-11T20:27:49+02:00 Reference additional commit for CVE-2022-39176/bluez - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Triage CVE-2022-41323 in python-django for buster LTS.

2022-10-11 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: f6c3b65d by Chris Lamb at 2022-10-11T08:30:04-07:00 Triage CVE-2022-41323 in python-django for buster LTS. - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 68fe923c by Moritz Muehlenhoff at 2022-10-11T17:29:24+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3147-1 for twig

2022-10-11 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 52f46448 by Chris Lamb at 2022-10-11T08:08:14-07:00 Reserve DLA-3147-1 for twig - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] new openssl issue

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
= @@ -2249,6 +2249,10 @@ CVE-2022-3359 RESERVED CVE-2022-3358 RESERVED + - openssl + [bullseye] - openssl (Only affects 3.x) + [buster] - openssl (Only affects 3.x) + NOTE: https://www.openssl.org/news/secadv/20221011.txt CVE

[Git][security-tracker-team/security-tracker][master] new erlang issue

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 729a137c by Moritz Muehlenhoff at 2022-10-11T16:17:42+02:00 new erlang issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new poppler issue

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7d1bb72a by Moritz Muehlenhoff at 2022-10-11T15:51:38+02:00 new poppler issue two xpdf n/a - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new node-xmldom issue

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8f8dff8b by Moritz Muehlenhoff at 2022-10-11T15:29:17+02:00 new node-xmldom issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new xen issues

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a1642d76 by Moritz Muehlenhoff at 2022-10-11T15:01:55+02:00 new xen issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d423a1c by Moritz Muehlenhoff at 2022-10-11T13:21:13+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] mark python-matrix-nio as ignored for bullseye

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7142cf64 by Moritz Muehlenhoff at 2022-10-11T13:07:43+02:00 mark python-matrix-nio as ignored for bullseye - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2022-10-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 13175522 by Moritz Muehlenhoff at 2022-10-11T11:21:55+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 75777c21 by security tracker role at 2022-10-11T08:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-21222/node-css-what via unstable

2022-10-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a2db7a9 by Salvatore Bonaccorso at 2022-10-11T09:33:53+02:00 Track fixed version for CVE-2022-21222/node-css-what via unstable Note that the claim that it is fixed in 2.1.3 is not true and