[Git][security-tracker-team/security-tracker][master] 2 commits: Revert "Fix entry for CVE-2023-36464/pypdf (bookworm)"

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d94c4c9 by Salvatore Bonaccorso at 2024-01-16T07:12:46+01:00 Revert Fix entry for CVE-2023-36464/pypdf (bookworm) This reverts commit ee075469a408af6e89d222ba3ffcff79d9c03f23. - - - - -

[Git][security-tracker-team/security-tracker][master] Remove paramiko from dla-needed.txt

2024-01-15 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 1cb1b17e by Tobias Frost at 2024-01-16T06:03:39+01:00 Remove paramiko from dla-needed.txt CVE-2023-48795/paramiko buster is not vulnerable. Confirmed by upstream:

[Git][security-tracker-team/security-tracker][master] Fix entry for CVE-2023-36464/pypdf (bookworm)

2024-01-15 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: ee075469 by Tobias Frost at 2024-01-16T06:01:28+01:00 Fix entry for CVE-2023-36464/pypdf (bookworm) - - - - - 1 changed file: - data/CVE/list Changes: =

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

Processing b16f1ece79a7c16b3747a2f253bf26367edd22f9 failed

2024-01-15 Thread security tracker role
The error message was: data/CVE/list:32182: expected package entry, got: '[bookworm] - pypdf 3.4.1-1+deb12u1 (Minor issue)' make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-36464 fixed version for pypdf in Bookworm

2024-01-15 Thread Scott Kitterman (@kitterman)
Scott Kitterman pushed to branch master at Debian Security Tracker / security-tracker Commits: b16f1ece by Scott Kitterman at 2024-01-15T17:44:58-05:00 Add CVE-2023-36464 fixed version for pypdf in Bookworm - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d86080d by Salvatore Bonaccorso at 2024-01-15T22:00:20+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update status for zbar in dsa-needed list

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 10db9177 by Salvatore Bonaccorso at 2024-01-15T21:46:00+01:00 Update status for zbar in dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Give back (for now) python3.11

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 59e8a86c by Salvatore Bonaccorso at 2024-01-15T21:44:13+01:00 Give back (for now) python3.11 Might be picked up later; In principle it looks that the update might as well go into the next

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 080a61cc by Salvatore Bonaccorso at 2024-01-15T21:43:36+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2021-3532

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ad3de391 by Salvatore Bonaccorso at 2024-01-15T21:37:12+01:00 Remove notes from CVE-2021-3532 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Remove notes for CVE-2021-3533

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f2e206b7 by Salvatore Bonaccorso at 2024-01-15T21:34:54+01:00 Remove notes for CVE-2021-3533 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-6915/linux

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 438213f5 by Salvatore Bonaccorso at 2024-01-15T21:32:16+01:00 Add CVE-2023-6915/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0565/linux

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 51a31561 by Salvatore Bonaccorso at 2024-01-15T21:28:21+01:00 Add CVE-2024-0565/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0562/linux

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 56302319 by Salvatore Bonaccorso at 2024-01-15T21:22:59+01:00 Add CVE-2024-0562/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-3726

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 00328722 by Salvatore Bonaccorso at 2024-01-15T21:17:24+01:00 Add Debian bug reference for CVE-2023-3726 Was more or less not sensible to report the bug at all as we treat ocsinventory-server

[Git][security-tracker-team/security-tracker][master] automatic update

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f9718507 by security tracker role at 2024-01-15T20:12:03+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] ocsinventory unimportant

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3622410b by Moritz Muehlenhoff at 2024-01-15T21:09:04+01:00 ocsinventory unimportant - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for rust-tracing issue

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d21c1715 by Salvatore Bonaccorso at 2024-01-15T21:08:11+01:00 Update information for rust-tracing issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-47995/freeimage

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a7ebb3d7 by Salvatore Bonaccorso at 2024-01-15T21:00:57+01:00 Add Debian bug reference for CVE-2023-47995/freeimage - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2024-01-15 Thread @roberto
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 280db614 by Roberto C. Sánchez at 2024-01-15T14:54:52-05:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Roberto C. Sánchez robe...@connexer.com - - - - - 1 changed file:

[Git][security-tracker-team/security-tracker][master] bugnums

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a46de165 by Moritz Muehlenhoff at 2024-01-15T20:54:12+01:00 bugnums - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] pypdf spu

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 96898fb3 by Moritz Mühlenhoff at 2024-01-15T20:52:24+01:00 pypdf spu - - - - - 1 changed file: - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-6237/openssl

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 40ecc1b9 by Salvatore Bonaccorso at 2024-01-15T20:44:46+01:00 Add Debian bug reference for CVE-2023-6237/openssl - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-6237: Add references to openssl-3.0 and openssl-3.1 branches

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
: = data/CVE/list = @@ -5,6 +5,8 @@ CVE-2023-6237 [openssl: Checking excessively long invalid RSA public keys may ta [buster] - openssl (Only affects 3.x) NOTE: https://www.openssl.org/news/secadv/20240115.txt

[Git][security-tracker-team/security-tracker][master] CVE-2023-39354,CVE-2023-40188: clarify context and commits

2024-01-15 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 8fb6ecdc by Sylvain Beucler at 2024-01-15T17:50:28+01:00 CVE-2023-39354,CVE-2023-40188: clarify context and commits DLA-3606-1 incorporated the 2 patches, no changes. - - - - - 1 changed file:

[Git][security-tracker-team/security-tracker][master] LTS: claim php-phpseclib and phpseclib in dla-needed.txt

2024-01-15 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: c2bd888a by Guilhem Moulin at 2024-01-15T16:45:57+01:00 LTS: claim php-phpseclib and phpseclib in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add reference to upstream tag for CVE-2023-50711

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4e87976e by Salvatore Bonaccorso at 2024-01-15T16:44:05+01:00 Add reference to upstream tag for CVE-2023-50711 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update comment for rust-tracing issue

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6835fd31 by Salvatore Bonaccorso at 2024-01-15T16:42:39+01:00 Update comment for rust-tracing issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] one gitlab issue fixed in sid (rest of them only for more recent release series)

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b302ca48 by Moritz Muehlenhoff at 2024-01-15T16:27:32+01:00 one gitlab issue fixed in sid (rest of them only for more recent release series) - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] netatalk ospu

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dedfa63 by Moritz Mühlenhoff at 2024-01-15T16:22:17+01:00 netatalk ospu - - - - - 1 changed file: - data/next-oldstable-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 6 commits: Triage libcrypto++ CVE as no-dsa for Buster.

2024-01-15 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 307fc42f by Markus Koschany at 2024-01-15T15:02:54+01:00 Triage libcrypto++ CVE as no-dsa for Buster. Minor issues - - - - - e6e036e0 by Markus Koschany at 2024-01-15T15:02:56+01:00

[Git][security-tracker-team/security-tracker][master] new openssl issue

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
3.x) + NOTE: https://www.openssl.org/news/secadv/20240115.txt + NOTE: https://github.com/openssl/openssl/commit/e09fc1d746a4fd15bb5c3d7bbbab950aadd005db CVE-2024- [RUSTSEC-2023-0078] - rust-tracing [bookworm] - rust-tracing (Vulnerable code not present) View

[Git][security-tracker-team/security-tracker][master] new rust-vmm-sys-util issue

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2c2c64a1 by Moritz Muehlenhoff at 2024-01-15T11:09:07+01:00 new rust-vmm-sys-util issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new rust-tracing issue

2024-01-15 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5cb3715e by Moritz Muehlenhoff at 2024-01-15T10:39:06+01:00 new rust-tracing issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 06d573c7 by Salvatore Bonaccorso at 2024-01-15T10:19:57+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-01-15 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8e75e8e5 by security tracker role at 2024-01-15T08:11:58+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list