[Git][security-tracker-team/security-tracker][master] Add CVE-2022-25927/node-ua-parser-js

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b3ffcdea by Salvatore Bonaccorso at 2023-02-24T08:57:22+01:00 Add CVE-2022-25927/node-ua-parser-js - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-4492/undertow

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 75286a1c by Salvatore Bonaccorso at 2023-02-24T08:47:14+01:00 Add CVE-2022-4492/undertow - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs (unrelated to ITPd airflow)

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3c1f3327 by Moritz Muehlenhoff at 2023-02-23T23:16:36+01:00 NFUs (unrelated to ITPd airflow) - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2022-48340 and CVE-2023-26253 for glusterfs as no-dsa following decision for bullseye.

2023-02-23 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c9221df by Ola Lundqvist at 2023-02-23T23:05:55+01:00 CVE-2022-48340 and CVE-2023-26253 for glusterfs as no-dsa following decision for bullseye. - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] chromium, emacs DSAs

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a12cd784 by Moritz Mühlenhoff at 2023-02-23T22:56:36+01:00 chromium, emacs DSAs - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2021-46023 as no-dsa following decision for bullseye.

2023-02-23 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: cdc2c8d5 by Ola Lundqvist at 2023-02-23T22:36:54+01:00 CVE-2021-46023 as no-dsa following decision for bullseye. - - - - - 3bf22b7a by Ola Lundqvist at 2023-02-23T22:37:27+01:00 CVE-2021-32850 as

[Git][security-tracker-team/security-tracker][master] CVE-2020-12278 and CVE-2020-12279 as not important to fix since it only occurs...

2023-02-23 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: 5ddc44ee by Ola Lundqvist at 2023-02-23T22:34:15+01:00 CVE-2020-12278 and CVE-2020-12279 as not important to fix since it only occurs on NTFS filesystems. This was marked as such already for jessie

[Git][security-tracker-team/security-tracker][master] CVE-2023-22742 as no-dsa also in buster.

2023-02-23 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: f3619e25 by Ola Lundqvist at 2023-02-23T22:29:48+01:00 CVE-2023-22742 as no-dsa also in buster. - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3219/gnupg2

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0cffc66d by Salvatore Bonaccorso at 2023-02-23T22:25:40+01:00 Add CVE-2022-3219/gnupg2 Mark it as unimprtant, as first the impact is low (slow processing) and upstream does not consider to

[Git][security-tracker-team/security-tracker][master] lts: take mono

2023-02-23 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: abdbe370 by Adrian Bunk at 2023-02-23T23:22:32+02:00 lts: take mono - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] LTS: add emacs to dla-needed.txt

2023-02-23 Thread Ola Lundqvist (@opal)
: 20230223: Programming language: Lisp. + NOTE: 20230223: VCS: https://salsa.debian.org/lts-team/packages/emacs.git +-- erlang NOTE: 20221119: Programming language: Erlang. NOTE: 20221119: at least CVE-2022-37026 needs to be fixed (original request has been for Stretch) View it on GitLab

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c07c9a17 by Salvatore Bonaccorso at 2023-02-23T22:17:18+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug references for nodejs issues

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 043ef690 by Salvatore Bonaccorso at 2023-02-23T22:12:58+01:00 Add Debian bug references for nodejs issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-22476/mantis

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e1856329 by Salvatore Bonaccorso at 2023-02-23T22:11:58+01:00 Add CVE-2023-22476/mantis - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add references for CVE-2023-239{18,19,20}/nodejs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e2666396 by Salvatore Bonaccorso at 2023-02-23T22:01:20+01:00 Add references for CVE-2023-239{18,19,20}/nodejs - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-23920/nodejs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f76e60f by Salvatore Bonaccorso at 2023-02-23T21:55:19+01:00 Add CVE-2023-23920/nodejs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-23919/nodejs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a264113 by Salvatore Bonaccorso at 2023-02-23T21:52:25+01:00 Add CVE-2023-23919/nodejs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-23918/nodejs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 08b5b016 by Salvatore Bonaccorso at 2023-02-23T21:42:50+01:00 Add CVE-2023-23918/nodejs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 82c0547b by Salvatore Bonaccorso at 2023-02-23T21:28:53+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Drop notes for CVE-2021-4243

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 275de37d by Salvatore Bonaccorso at 2023-02-23T21:22:58+01:00 Drop notes for CVE-2021-4243 CVE-2021-4243 got rejected in favour of CVE-2021-32850. - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3340-1 for libgit2

2023-02-23 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 045a0647 by Tobias Frost at 2023-02-23T21:20:46+01:00 Reserve DLA-3340-1 for libgit2 - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2014-125064, withdrawn as no security issue

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: df3337d8 by Salvatore Bonaccorso at 2023-02-23T21:19:30+01:00 Remove notes from CVE-2014-125064, withdrawn as no security issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 046f47aa by security tracker role at 2023-02-23T20:10:30+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-23039/linux

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a070b758 by Salvatore Bonaccorso at 2023-02-23T21:01:47+01:00 Add CVE-2023-23039/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reassociate two NFUs with itp'ed source

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 138fe310 by Salvatore Bonaccorso at 2023-02-23T20:59:02+01:00 Reassociate two NFUs with itped source - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-25579/nextcloud-server

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c733960c by Salvatore Bonaccorso at 2023-02-23T20:56:46+01:00 Add CVE-2023-25579/nextcloud-server - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9205cae9 by Salvatore Bonaccorso at 2023-02-23T20:56:14+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add references for CVE-2022-43548

2023-02-23 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 6325f68d by Guilhem Moulin at 2023-02-23T20:30:28+01:00 Add references for CVE-2022-43548 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3339-1 for binwalk

2023-02-23 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 30ef5328 by Adrian Bunk at 2023-02-23T21:13:11+02:00 Reserve DLA-3339-1 for binwalk - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] bookworm triage

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ce345456 by Moritz Muehlenhoff at 2023-02-23T17:52:23+01:00 bookworm triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3338-1 for git

2023-02-23 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: d83a0a8d by Emilio Pozuelo Monfort at 2023-02-23T17:46:26+01:00 Reserve DLA-3338-1 for git - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] add additional emacs references

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 19c60915 by Moritz Muehlenhoff at 2023-02-23T17:37:40+01:00 add additional emacs references - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-23009/libreswan

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 979df58a by Salvatore Bonaccorso at 2023-02-23T14:53:31+01:00 Add Debian bug reference for CVE-2023-23009/libreswan - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] bookworm triage

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 923be14c by Moritz Muehlenhoff at 2023-02-23T13:28:34+01:00 bookworm triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Claim freeradius in dla-needed.txt

2023-02-23 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: c858649b by Markus Koschany at 2023-02-23T12:41:54+01:00 Claim freeradius in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] bullseye triage

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5de29380 by Moritz Muehlenhoff at 2023-02-23T12:26:31+01:00 bullseye triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Move listing of CVE-2022-3970, CVE-2022-3626 and CVE-2022-3598 to DSA-5333-1 entry

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6a173a3c by Salvatore Bonaccorso at 2023-02-23T11:00:14+01:00 Move listing of CVE-2022-3970, CVE-2022-3626 and CVE-2022-3598 to DSA-5333-1 entry - - - - - 2 changed files: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2023-02-23 Thread Henri Salo (@hsalo-guest)
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: c5de1b01 by Henri Salo at 2023-02-23T11:51:28+02:00 NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] dsa-needed.txt: claim frr

2023-02-23 Thread Aron Xu (@aron)
Aron Xu pushed to branch master at Debian Security Tracker / security-tracker Commits: c4de7c83 by Aron Xu at 2023-02-23T17:21:14+08:00 dsa-needed.txt: claim frr - - - - - 1 changed file: - data/dsa-needed.txt Changes: = data/dsa-needed.txt

[Git][security-tracker-team/security-tracker][master] track fixed CVE for tiff

2023-02-23 Thread Aron Xu (@aron)
Aron Xu pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c5218b5 by Aron Xu at 2023-02-23T17:10:17+08:00 track fixed CVE for tiff - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5358-1 for asterisk

2023-02-23 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f4bbc971 by Markus Koschany at 2023-02-23T10:06:40+01:00 Reserve DSA-5358-1 for asterisk - - - - - 2 changed files: - data/CVE/list - data/DSA/list Changes:

[Git][security-tracker-team/security-tracker][master] Process more NFUs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 615e550d by Salvatore Bonaccorso at 2023-02-23T10:04:00+01:00 Process more NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 379dc697 by Salvatore Bonaccorso at 2023-02-23T09:54:45+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] update dsa-needed

2023-02-23 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9546ac8c by Moritz Muehlenhoff at 2023-02-23T09:25:47+01:00 update dsa-needed - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-02-23 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 32401dca by security tracker role at 2023-02-23T08:10:23+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list