[Git][security-tracker-team/security-tracker][master] Add two new trafficserver issues

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a5e5cfce by Salvatore Bonaccorso at 2023-08-09T22:44:48+02:00 Add two new trafficserver issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 89d2b5e4 by Salvatore Bonaccorso at 2023-08-09T22:42:43+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bc559100 by Salvatore Bonaccorso at 2023-08-09T22:30:43+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-4273/linux

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 88ba7679 by Salvatore Bonaccorso at 2023-08-09T22:21:14+02:00 Add CVE-2023-4273/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 13e211d9 by security tracker role at 2023-08-09T20:12:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Associate mitigation for CVE-2023-20588 in kernel

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f448a611 by Salvatore Bonaccorso at 2023-08-09T21:58:40+02:00 Associate mitigation for CVE-2023-20588 in kernel - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] LTS: claim datatables.js in dla-needed.txt

2023-08-09 Thread Guilhem Moulin (@guilhem)
: = data/dla-needed.txt = @@ -32,7 +32,7 @@ cinder NOTE: 20230525: Added by Front-Desk (lamby) NOTE: 20230525: NB. CVE-2023-2088 filed against python-glance-store, python-os-brick, nova and cinder. -- -datatables.js +datatables.js (guilhem) NOTE: 20230809

[Git][security-tracker-team/security-tracker][master] 2 commits: Unify style for some notes

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: db6749c3 by Salvatore Bonaccorso at 2023-08-09T21:22:44+02:00 Unify style for some notes - - - - - fba58211 by Salvatore Bonaccorso at 2023-08-09T21:23:52+02:00 CVE-2023-20569: Reference

[Git][security-tracker-team/security-tracker][master] Update note for amd64-microcode related fixes

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d394812 by Salvatore Bonaccorso at 2023-08-09T20:59:20+02:00 Update note for amd64-microcode related fixes - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-37276/python-aiohttp: buster not-affected

2023-08-09 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 86284d7b by Sylvain Beucler at 2023-08-09T20:31:12+02:00 CVE-2023-37276/python-aiohttp: buster not-affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: NFUs

2023-08-09 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5044562a by Moritz Muehlenhoff at 2023-08-09T20:07:53+02:00 NFUs - - - - - 1b4d0128 by Moritz Muehlenhoff at 2023-08-09T20:07:54+02:00 bullseye/bookworm triage - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Triaging zabbix with focus LTS/buster

2023-08-09 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 4b21c5fb by Tobias Frost at 2023-08-09T18:42:38+02:00 Triaging zabbix with focus LTS/buster CVE-2023-29458: duktape library only introduced in 5.0.0alpha1 CVE-2023-29452: geomap widget only introduced

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3523-1 for firefox-esr

2023-08-09 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 3099d0a5 by Emilio Pozuelo Monfort at 2023-08-09T18:41:58+02:00 Reserve DLA-3523-1 for firefox-esr - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] dla: add datatables.js

2023-08-09 Thread Sylvain Beucler (@beuc)
-needed.txt = @@ -32,6 +32,11 @@ cinder NOTE: 20230525: Added by Front-Desk (lamby) NOTE: 20230525: NB. CVE-2023-2088 filed against python-glance-store, python-os-brick, nova and cinder. -- +datatables.js + NOTE: 20230809: Added by Front-Desk (Beuc) + NOTE

[Git][security-tracker-team/security-tracker][master] dla: add i2p (with experimental issue-based LTS workflow)

2023-08-09 Thread Sylvain Beucler (@beuc)
: = data/dla-needed.txt = @@ -60,6 +60,10 @@ glib2.0 (santiago) NOTE: 20230724: buster should be ready. need if it's possible to run same reporter's fuzz test NOTE: 20230807: idem. -- +i2p + NOTE: 20230809: Added by Front-Desk (Beuc

[Git][security-tracker-team/security-tracker][master] 2 commits: data/embedded-code-copies: drop ruby versions <=wheezy

2023-08-09 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 09b41c3c by Sylvain Beucler at 2023-08-09T11:18:40+02:00 data/embedded-code-copies: drop ruby versions =wheezy - - - - - c9d9f0a6 by Sylvain Beucler at 2023-08-09T11:18:40+02:00

[Git][security-tracker-team/security-tracker][master] NFUs

2023-08-09 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f4e4937e by Moritz Muehlenhoff at 2023-08-09T10:58:05+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Take rails

2023-08-09 Thread Utkarsh Gupta (@utkarsh)
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b857919 by Utkarsh Gupta at 2023-08-09T14:26:30+05:30 Take rails - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Take intel-microcode

2023-08-09 Thread Utkarsh Gupta (@utkarsh)
= @@ -64,10 +64,11 @@ imagemagick (rouca) NOTE: 20230622: Added by Front-Desk (Beuc) NOTE: 20230622: Requested by maintainer (rouca) to tidy remaining open CVEs (Beuc/front-desk) -- -intel-microcode +intel-microcode (utkarsh) NOTE: 20230809: Added

[Git][security-tracker-team/security-tracker][master] dla: add intel-microcode

2023-08-09 Thread Sylvain Beucler (@beuc)
-needed.txt = @@ -64,6 +64,11 @@ imagemagick (rouca) NOTE: 20230622: Added by Front-Desk (Beuc) NOTE: 20230622: Requested by maintainer (rouca) to tidy remaining open CVEs (Beuc/front-desk) -- +intel-microcode + NOTE: 20230809: Added by Front-Desk (Beuc

[Git][security-tracker-team/security-tracker][master] NFUs

2023-08-09 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 11ea205a by Moritz Muehlenhoff at 2023-08-09T10:25:40+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2023-08-09 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 19b1370d by Moritz Muehlenhoff at 2023-08-09T10:21:33+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new undertow issue

2023-08-09 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: c00a84d6 by Moritz Muehlenhoff at 2023-08-09T10:18:40+02:00 new undertow issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-09 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e740c12a by security tracker role at 2023-08-09T08:12:16+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Claim rar and unrar-nonfree in dla-needed.txt

2023-08-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 0635c44d by Markus Koschany at 2023-08-09T08:35:57+02:00 Claim rar and unrar-nonfree in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Mark remaining hdf5 CVE as no-dsa/postponed.

2023-08-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 70c636c5 by Markus Koschany at 2023-08-09T08:23:58+02:00 Mark remaining hdf5 CVE as no-dsa/postponed. Wait until those issues are fixed in unstable. - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3522-1 for hdf5

2023-08-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 7803b26c by Markus Koschany at 2023-08-09T08:21:04+02:00 Reserve DLA-3522-1 for hdf5 - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes: