[Git][security-tracker-team/security-tracker][master] 9 commits: CVE-2024-31497,filezilla: buster is no-dsa

2024-04-21 Thread Markus Koschany (@apo)
= data/dla-needed.txt = @@ -33,6 +33,9 @@ ansible (debian) apache2 NOTE: 20240418: Added by Front-Desk (apo) -- +astropy + NOTE: 20240421: Added by Front-Desk (apo) +-- atril NOTE: 20240121: Added by Front-Desk (apo) NOTE: 20240121

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-35876 as NFU

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f6e1b35d by Salvatore Bonaccorso at 2024-04-21T22:33:58+02:00 Mark CVE-2020-35876 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: mark rust-zerocopy as fixed in sid, as versions above 0.7.31 have the patch

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a841dd83 by Alexander Kjäll at 2024-04-20T08:26:19+02:00 mark rust-zerocopy as fixed in sid, as versions above 0.7.31 have the patch - - - - - ead28e11 by Salvatore Bonaccorso at

[Git][security-tracker-team/security-tracker][master] Add reference to upstream fix for CVE-2024-22640

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2dcae0aa by Salvatore Bonaccorso at 2024-04-21T22:12:39+02:00 Add reference to upstream fix for CVE-2024-22640 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for sngrep issues fixed via unstable

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 31c0052e by Salvatore Bonaccorso at 2024-04-21T21:45:14+02:00 Track fixed version for sngrep issues fixed via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for less issues fixed via unstable

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 62055894 by Salvatore Bonaccorso at 2024-04-21T21:43:08+02:00 Track fixed version for less issues fixed via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add new FreeRDP issues

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d1d4daa5 by Salvatore Bonaccorso at 2024-04-21T21:34:39+02:00 Add new FreeRDP issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add new znuny issues

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bea1019e by Salvatore Bonaccorso at 2024-04-21T21:28:54+02:00 Add new znuny issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for thunderbird issues via unstable (for mfsa2024-20)

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 127a4bc4 by Salvatore Bonaccorso at 2024-04-21T21:24:28+02:00 Track fixed version for thunderbird issues via unstable (for mfsa2024-20) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add thunderbird to dsa-needed list

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6f2c5dfe by Salvatore Bonaccorso at 2024-04-21T21:23:09+02:00 Add thunderbird to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add thunderbird tracking for CVEs from mfsa2024-20

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 69e27daf by Salvatore Bonaccorso at 2024-04-21T21:22:19+02:00 Add thunderbird tracking for CVEs from mfsa2024-20 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add MR reference for CVE-2022-26128/frr and CVE-2022-26129/frr

2024-04-21 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 3c8638eb by Tobias Frost at 2024-04-21T20:33:05+02:00 Add MR reference for CVE-2022-26128/frr and CVE-2022-26129/frr They are both fixed by the same patch. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] CVE-2022-26127/frr add PR that fixes the issue.

2024-04-21 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: e7d6304e by Tobias Frost at 2024-04-21T20:09:56+02:00 CVE-2022-26127/frr add PR that fixes the issue. - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

2024-04-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 23a75858 by Moritz Muehlenhoff at 2024-04-21T19:59:55+02:00 bookworm/bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2022-26126/frr - add upstream PR fix.

2024-04-21 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 3556f07b by Tobias Frost at 2024-04-21T19:55:30+02:00 CVE-2022-26126/frr - add upstream PR fix. This time adding to the correct CVE, c49e7ebcbdc95ccda3200e3831b29b84d4f5ef38 accidentially added it to

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-22640/tcppdf via unstable

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dc1c8449 by Salvatore Bonaccorso at 2024-04-21T17:47:56+02:00 Track fixed version for CVE-2024-22640/tcppdf via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for chromium via unstable

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3345921e by Salvatore Bonaccorso at 2024-04-21T17:46:14+02:00 Track fixed version for chromium via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Revert "CVE-2022-26126/frr - add upstream PR fix."

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 69d72e94 by Salvatore Bonaccorso at 2024-04-21T17:29:24+02:00 Revert CVE-2022-26126/frr - add upstream PR fix. This reverts commit c49e7ebcbdc95ccda3200e3831b29b84d4f5ef38. This seems not

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-21506/pymongo

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d8b5bda2 by Salvatore Bonaccorso at 2024-04-21T17:13:14+02:00 Add Debian bug reference for CVE-2024-21506/pymongo - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Process some NFUs

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b6bac27b by Salvatore Bonaccorso at 2024-04-21T17:11:05+02:00 Process some NFUs - - - - - 354aca69 by Salvatore Bonaccorso at 2024-04-21T17:11:06+02:00 Add CVE-2024-31744/jasper - - - - - 1

[Git][security-tracker-team/security-tracker][master] data/CVE/list: s/Introducecd/Introduced/

2024-04-21 Thread Samuel Henrique (@samueloph)
Samuel Henrique pushed to branch master at Debian Security Tracker / security-tracker Commits: c1dfd3da by Samuel Henrique at 2024-04-21T16:06:43+01:00 data/CVE/list: s/Introducecd/Introduced/ - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] putty issue also affects filezilla

2024-04-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 697ad5f9 by Moritz Mühlenhoff at 2024-04-21T17:00:39+02:00 putty issue also affects filezilla - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2022-26126/frr - add upstream PR fix.

2024-04-21 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: c49e7ebc by Tobias Frost at 2024-04-21T10:18:29+02:00 CVE-2022-26126/frr - add upstream PR fix. - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 96f4d461 by security tracker role at 2024-04-21T08:11:50+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list