[Git][security-tracker-team/security-tracker][master] 3 commits: Claim knot-resolver and wordpress in dla-needed.txt

2024-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c336754 by Markus Koschany at 2024-04-06T07:39:03+02:00 Claim knot-resolver and wordpress in dla-needed.txt - - - - - c9dfd707 by Markus Koschany at 2024-04-06T07:39:56+02:00 Claim jetty9 in

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3779-1 for tomcat9

2024-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 80daa719 by Markus Koschany at 2024-04-06T07:15:20+02:00 Reserve DLA-3779-1 for tomcat9 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] LTS: take org-mode in dla-needed.txt

2024-04-05 Thread Sean Whitton (@spwhitton)
-needed.txt = @@ -200,7 +200,7 @@ nvidia-graphics-drivers-legacy-390xx NOTE: 20240303: Added by Front-Desk (apo) NOTE: 20240303: See comment for nvidia-graphics-drivers. (apo/front-desk) -- -org-mode +org-mode (Sean Whitton) NOTE: 20240405: Added

[Git][security-tracker-team/security-tracker][master] LTS: take emacs in dla-needed.txt

2024-04-05 Thread Sean Whitton (@spwhitton)
Sean Whitton pushed to branch master at Debian Security Tracker / security-tracker Commits: d5dcdb71 by Sean Whitton at 2024-04-06T12:25:05+08:00 LTS: take emacs in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5692/wordpress

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c6d1022 by Salvatore Bonaccorso at 2024-04-05T22:50:02+02:00 Add CVE-2023-5692/wordpress - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-2380/check-mk

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 87ccc4d4 by Salvatore Bonaccorso at 2024-04-05T22:44:34+02:00 Add CVE-2024-2380/check-mk - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add new CVEs for mattermost-server

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6d66ad4b by Salvatore Bonaccorso at 2024-04-05T22:39:57+02:00 Add new CVEs for mattermost-server - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d8b7f0e3 by Salvatore Bonaccorso at 2024-04-05T22:33:24+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 3 commits: Add CVE-2024-2312/grub2

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 58fc63bd by Salvatore Bonaccorso at 2024-04-05T22:18:09+02:00 Add CVE-2024-2312/grub2 - - - - - 30951a10 by Salvatore Bonaccorso at 2024-04-05T22:18:12+02:00 Add two c-blosc2 issues (but

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5467c830 by security tracker role at 2024-04-05T20:12:19+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-3209/upx-ucl

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f55066a9 by Salvatore Bonaccorso at 2024-04-05T21:55:56+02:00 Add CVE-2024-3209/upx-ucl - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-28871/libhtp

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a9100fb6 by Salvatore Bonaccorso at 2024-04-05T21:52:18+02:00 Add CVE-2024-28871/libhtp - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Associate CVE-2024-31498 with yubikey-manager-qt

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a02a1890 by Salvatore Bonaccorso at 2024-04-05T20:54:47+02:00 Associate CVE-2024-31498 with yubikey-manager-qt Issue is in the src:yubikey-manager-qt providing the ykman-gui tool itself. But

[Git][security-tracker-team/security-tracker][master] Mark CVE-2024-22189 yet as unfixed

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 93b2d601 by Salvatore Bonaccorso at 2024-04-05T20:50:41+02:00 Mark CVE-2024-22189 yet as unfixed Please double-check if you agree with me. But the current 0.38.2-1 code fetched from unstable,

[Git][security-tracker-team/security-tracker][master] Add Linux CVEs from kernel-sec

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1991234a by Salvatore Bonaccorso at 2024-04-05T20:37:10+02:00 Add Linux CVEs from kernel-sec - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add reference to regression bug for xorg-server

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8bc45566 by Salvatore Bonaccorso at 2024-04-05T20:27:36+02:00 Add reference to regression bug for xorg-server - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] bullseye/bookworm triage

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 434878ad by Moritz Muehlenhoff at 2024-04-05T20:19:39+02:00 bullseye/bookworm triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] xorg-server update will be hold back due to regression

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a47baacf by Salvatore Bonaccorso at 2024-04-05T20:13:37+02:00 xorg-server update will be hold back due to regression - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Remove duplicate intel-microcode tracking

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6252d75b by Salvatore Bonaccorso at 2024-04-05T20:10:46+02:00 Remove duplicate intel-microcode tracking - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] LTS: claim util-linux in dla-needed.txt

2024-04-05 Thread Guilhem Moulin (@guilhem)
: = data/dla-needed.txt = @@ -293,7 +293,7 @@ tomcat9 (Markus Koschany) tzdata (Emilio) NOTE: 20240327: Added by pochu -- -util-linux +util-linux (guilhem) NOTE: 20240405: Added by Front-Desk (lamby) -- varnish View it on GitLab: https://salsa.debian.org

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage util-linux for buster LTS (CVE-2024-28085)

2024-04-05 Thread Chris Lamb (@lamby)
: = data/dla-needed.txt = @@ -293,6 +293,9 @@ tomcat9 (Markus Koschany) tzdata (Emilio) NOTE: 20240327: Added by pochu -- +util-linux + NOTE: 20240405: Added by Front-Desk (lamby) +-- varnish NOTE: 20231117: Added by Front-Desk (apo

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage org-mode for buster LTS (CVE-2024-30205)

2024-04-05 Thread Chris Lamb (@lamby)
: = data/dla-needed.txt = @@ -200,6 +200,9 @@ nvidia-graphics-drivers-legacy-390xx NOTE: 20240303: Added by Front-Desk (apo) NOTE: 20240303: See comment for nvidia-graphics-drivers. (apo/front-desk) -- +org-mode + NOTE: 20240405: Added

[Git][security-tracker-team/security-tracker][master] 2 commits: Add offending commit for CVE-2024-30202/emacs.

2024-04-05 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 50cb1e64 by Chris Lamb at 2024-04-05T17:22:09+01:00 Add offending commit for CVE-2024-30202/emacs. - - - - - 35aa10ed by Chris Lamb at 2024-04-05T17:23:19+01:00 Triage CVE-2024-30202 in emacs for buster

[Git][security-tracker-team/security-tracker][master] bugnums

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 448af4d0 by Moritz Muehlenhoff at 2024-04-05T17:16:16+02:00 bugnums - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] libtommath spu

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dddb9983 by Moritz Mühlenhoff at 2024-04-05T16:40:11+02:00 libtommath spu - - - - - 1 changed file: - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] curl, intel-microcode spus

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e2efcd30 by Moritz Mühlenhoff at 2024-04-05T16:10:19+02:00 curl, intel-microcode spus - - - - - 1 changed file: - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a4f5e667 by Moritz Muehlenhoff at 2024-04-05T15:59:05+02:00 bookworm/bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e2b6b534 by Moritz Muehlenhoff at 2024-04-05T15:07:19+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] node-undici fixed in sid

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a89342c3 by Moritz Muehlenhoff at 2024-04-05T14:53:15+02:00 node-undici fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] apache2 fixed in sid

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 04fbea48 by Moritz Muehlenhoff at 2024-04-05T14:50:35+02:00 apache2 fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c2f14b1 by Moritz Muehlenhoff at 2024-04-05T14:39:03+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bc6c1ce0 by Moritz Muehlenhoff at 2024-04-05T13:52:22+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new quic-go issue

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 15515a64 by Moritz Muehlenhoff at 2024-04-05T13:09:43+02:00 new quic-go issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new undertow issue

2024-04-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: eae0cbec by Moritz Muehlenhoff at 2024-04-05T13:07:08+02:00 new undertow issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: take xorg-server

2024-04-05 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: ab5df7be by Adrian Bunk at 2024-04-05T13:43:48+03:00 dla: take xorg-server - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] CVE-2024-31210/wordpress assigned

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 79c9c55f by Salvatore Bonaccorso at 2024-04-05T11:13:05+02:00 CVE-2024-31210/wordpress assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2024-31211/wordpress assigned

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5153f32b by Salvatore Bonaccorso at 2024-04-05T11:10:21+02:00 CVE-2024-31211/wordpress assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 791f5b34 by Salvatore Bonaccorso at 2024-04-05T10:35:25+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ad12f23c by security tracker role at 2024-04-05T08:11:40+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list