[Git][security-tracker-team/security-tracker][master] Cleanup trailing whitespaces

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 051886be by Salvatore Bonaccorso at 2022-11-11T21:30:37+01:00 Cleanup trailing whitespaces - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2fa71d05 by Salvatore Bonaccorso at 2022-11-11T21:30:03+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3953/exiv2

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dc5d665b by Salvatore Bonaccorso at 2022-11-11T21:29:28+01:00 Add CVE-2022-3953/exiv2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3957/gpac

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 298e0017 by Salvatore Bonaccorso at 2022-11-11T21:28:58+01:00 Add CVE-2022-3957/gpac - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e1729473 by Salvatore Bonaccorso at 2022-11-11T21:16:58+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add WSA-2022-0010 references for two CVEs

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e366854 by Salvatore Bonaccorso at 2022-11-11T21:12:35+01:00 Add WSA-2022-0010 references for two CVEs - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f221026e by security tracker role at 2022-11-11T20:10:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-31764 as NFU

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 70a72240 by Salvatore Bonaccorso at 2022-11-11T21:09:13+01:00 Add CVE-2022-31764 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-3650/ceph

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ae84efc0 by Salvatore Bonaccorso at 2022-11-11T21:05:34+01:00 Update information for CVE-2022-3650/ceph - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reflect change in XSA-422 about AMD references

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 411a4384 by Salvatore Bonaccorso at 2022-11-11T20:52:54+01:00 Reflect change in XSA-422 about AMD references - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-42905/wolfssl via unstable

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 742e1b83 by Salvatore Bonaccorso at 2022-11-11T18:42:31+01:00 Track fixed version for CVE-2022-42905/wolfssl via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] bullseye triage

2022-11-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a89b938c by Moritz Muehlenhoff at 2022-11-11T16:05:36+01:00 bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] dla: add libsdl2

2022-11-11 Thread Sylvain Beucler (@beuc)
= @@ -143,6 +143,10 @@ libde265 libreoffice NOTE: 20221012: Programming language: C++. -- +libsdl2 + NOTE: 2022: Programming language: C. + NOTE: 2022: Sync with jessie/stretch/bullseye (Beuc/front-desk) +-- libstb NOTE: 2022: Programming

[Git][security-tracker-team/security-tracker][master] dla: add libarchive

2022-11-11 Thread Sylvain Beucler (@beuc)
= @@ -127,6 +127,10 @@ lava (Dominik George) libapreq2 NOTE: 20221031: Programming language: C. -- +libarchive + NOTE: 2022: Programming language: C. + NOTE: 2022: Sync with jessie/stretch/bullseye-11.3 (Beuc/front-desk) +-- libcommons-jxpath-java

[Git][security-tracker-team/security-tracker][master] dla: add jqueryui

2022-11-11 Thread Sylvain Beucler (@beuc)
= @@ -110,6 +110,10 @@ jhead joblib (Dominik George) NOTE: 20221006: Programming language: Python. -- +jqueryui + NOTE: 2022: Programming language: JavaScript. + NOTE: 2022: Follow fixes from bullseye 11.2 (and jessie/elts) (Beuc/front-desk

[Git][security-tracker-team/security-tracker][master] CVE-2021-23440: Drop uneeded reference to commit from pull request

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 62108f17 by Salvatore Bonaccorso at 2022-11-11T14:48:56+01:00 CVE-2021-23440: Drop uneeded reference to commit from pull request - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFU

2022-11-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 205a514a by Moritz Muehlenhoff at 2022-11-11T14:40:35+01:00 NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] xorg-server fixed in sid

2022-11-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b9e31167 by Moritz Muehlenhoff at 2022-11-11T14:33:06+01:00 xorg-server fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: add nginx

2022-11-11 Thread Sylvain Beucler (@beuc)
= @@ -164,6 +164,10 @@ netatalk NOTE: 20220816: Programming language: C. NOTE: 20220912: We get errors in the log, not present on bookworm. Needs more investigation. (stefanor) -- +nginx + NOTE: 2022: Programming language: C. + NOTE: 2022: Upcoming

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-32149: fix buster package name

2022-11-11 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ebeb330 by Sylvain Beucler at 2022-11-11T12:55:46+01:00 CVE-2022-32149: fix buster package name - - - - - c196c055 by Sylvain Beucler at 2022-11-11T12:56:36+01:00 CVE-2022-3821/systemd: buster

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-21227/node-sqlite3: buster not-affected

2022-11-11 Thread Sylvain Beucler (@beuc)
errors in the log, not present on bookworm. Needs more investigation. (stefanor) -- +node-cached-path-relative + NOTE: 2022: Programming language: JavaScript. + NOTE: 2022: Follow fixes from bullseye 11.3 (Beuc/front-desk) +-- node-css-what NOTE: 20221031: Programming language: Javascript

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2021-3805/node-object-path: fix wrong patch URL from mitre

2022-11-11 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 3be1e72c by Sylvain Beucler at 2022-11-11T11:40:45+01:00 CVE-2021-3805/node-object-path: fix wrong patch URL from mitre - - - - - ed88d9e4 by Sylvain Beucler at 2022-11-11T11:47:49+01:00

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-32149/golang-golang-x-text: buster postponed

2022-11-11 Thread Sylvain Beucler (@beuc)
/dla-needed.txt = @@ -135,6 +135,9 @@ libde265 libreoffice NOTE: 20221012: Programming language: C++. -- +libstb + NOTE: 2022: Programming language: C. +-- linux (Ben Hutchings) -- man2html View it on GitLab: https://salsa.debian.org/security

[Git][security-tracker-team/security-tracker][master] 2 commits: new nginx issues

2022-11-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c9eda17 by Moritz Muehlenhoff at 2022-11-11T09:44:53+01:00 new nginx issues - - - - - 1a7adcf0 by Moritz Muehlenhoff at 2022-11-11T09:44:54+01:00 nginx fixed in sid - - - - - 2 changed

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-3628/linux via unstable

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8d8403bc by Salvatore Bonaccorso at 2022-11-11T09:37:41+01:00 Track fixed version for CVE-2022-3628/linux via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b178b126 by Salvatore Bonaccorso at 2022-11-11T09:16:30+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2022-3812{6,7,8}

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9bc66441 by Salvatore Bonaccorso at 2022-11-11T09:13:08+01:00 Remove notes from CVE-2022-3812{6,7,8} They are now rejected as the issues in binutils were not security issues. The assigning CNA

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 66c61060 by security tracker role at 2022-11-11T08:10:16+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list