[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2021-39537/ncurses

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ae32f5bf by Salvatore Bonaccorso at 2023-01-27T22:23:35+01:00 Track fixed version for CVE-2021-39537/ncurses - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add two new CVEs for pyload, itp'ed

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f512347e by Salvatore Bonaccorso at 2023-01-27T22:03:31+01:00 Add two new CVEs for pyload, itped Signed-off-by: Salvatore Bonaccorso car...@debian.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-0512/vim

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 63342e88 by Salvatore Bonaccorso at 2023-01-27T21:55:44+01:00 Add CVE-2023-0512/vim - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c97a87ca by Salvatore Bonaccorso at 2023-01-27T21:52:54+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Sync status for CVE-2023-0468/linux with kernel-sec

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fd3e7560 by Salvatore Bonaccorso at 2023-01-27T21:37:06+01:00 Sync status for CVE-2023-0468/linux with kernel-sec - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 383ba65b by Salvatore Bonaccorso at 2023-01-27T21:32:56+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-22799/ruby-globalid

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cf84fe3b by Salvatore Bonaccorso at 2023-01-27T21:24:07+01:00 Add CVE-2023-22799/ruby-globalid - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-22794/rails

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d4a80297 by Salvatore Bonaccorso at 2023-01-27T21:21:17+01:00 Update information for CVE-2023-22794/rails Drop (for now) the not-affected annoatation, as bullseye has 2:6.0.3.7+dfsg-2. The

[Git][security-tracker-team/security-tracker][master] automatic update

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8f1d852d by security tracker role at 2023-01-27T20:10:22+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-4457{0,1,2}

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 45ef8a37 by Salvatore Bonaccorso at 2023-01-27T20:56:19+01:00 Update information for CVE-2022-4457{0,1,2} Just pinpointing the respective upstream tags for easier tracking of fixing versions

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2020-36658

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 363c2634 by Salvatore Bonaccorso at 2023-01-27T20:49:55+01:00 Update information for CVE-2020-36658 Drop doubled reference and add upstream tag information. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add upstream tag information for CVE-2020-36659/libapache-session-browseable-perl

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 86b94645 by Salvatore Bonaccorso at 2023-01-27T20:44:44+01:00 Add upstream tag information for CVE-2020-36659/libapache-session-browseable-perl - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2020-36649

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 105b3816 by Salvatore Bonaccorso at 2023-01-27T20:35:46+01:00 Reference upstream commit for CVE-2020-36649 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] curl DSA

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 117261cd by Moritz Mühlenhoff at 2023-01-27T18:22:51+01:00 curl DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] papaparse embedded in mediawiki

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1d2c878b by Moritz Muehlenhoff at 2023-01-27T15:31:06+01:00 papaparse embedded in mediawiki - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] two R515 specific Nvidia issues and related NFUs

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b13c52e2 by Moritz Muehlenhoff at 2023-01-27T14:40:58+01:00 two R515 specific Nvidia issues and related NFUs - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla-needed: claim sox

2023-01-27 Thread Helmut Grohne (@helmutg)
Helmut Grohne pushed to branch master at Debian Security Tracker / security-tracker Commits: 164672ee by Helmut Grohne at 2023-01-27T13:38:48+01:00 dla-needed: claim sox - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 2 commits: Triage CVE-2020-36659 and CVE-2020-36658.

2023-01-27 Thread Guilhem Moulin (@guilhem)
NOTE: 20230126: VCS: https://salsa.debian.org/lts-team/packages/libgit2.git NOTE: 20230126: Please fix also CVE-2020* (gladk). -- +libapache-session-browseable-perl (guilhem) + NOTE: 20230127: Programming language: Perl. + NOTE: 20230127: Blocking complete fix for lemonldap-ng's CVE-2020

[Git][security-tracker-team/security-tracker][master] NFU (concludes external check)

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 65fd2192 by Moritz Muehlenhoff at 2023-01-27T12:49:16+01:00 NFU (concludes external check) - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new ruby-rack issues

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dcc4f349 by Moritz Muehlenhoff at 2023-01-27T12:48:03+01:00 new ruby-rack issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new rails issues

2023-01-27 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: cdc09a87 by Moritz Muehlenhoff at 2023-01-27T12:34:08+01:00 new rails issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla-needed: sox is unfixable

2023-01-27 Thread Helmut Grohne (@helmutg)
/sox.git + NOTE: 20230127: There is no point in dealing with sox. No upstream commit in 1.5 years. No answer to Enrico's upstream ticket. RedHat issued notabug. Unfixed in stable and unstable. Don't run sox on untrusted input. (Helmut) -- thunderbird (Emilio) NOTE: 20230123: Programming

[Git][security-tracker-team/security-tracker][master] automatic update

2023-01-27 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b4dba77d by security tracker role at 2023-01-27T08:10:23+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list