[Git][security-tracker-team/security-tracker][master] pypy3: Missed that CVE-2021-28861 is fixed

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: cd52008d by Stefano Rivera at 2024-05-01T16:48:36-04:00 pypy3: Missed that CVE-2021-28861 is fixed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] pypy3: Missed thta CVE-2023-24329 is fixed

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: eefb9ee9 by Stefano Rivera at 2024-05-01T16:18:46-04:00 pypy3: Missed thta CVE-2023-24329 is fixed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] pypy3: Use versions published in unstable, not experimental

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 90abd11f by Stefano Rivera at 2024-05-01T15:29:42-04:00 pypy3: Use versions published in unstable, not experimental - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update cPython versions that pypy3 embeds

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 801a211f by Stefano Rivera at 2024-05-01T15:13:55-04:00 Update cPython versions that pypy3 embeds - - - - - 1 changed file: - data/embedded-code-copies Changes:

[Git][security-tracker-team/security-tracker][master] Triage of Python bugs that affect pypy3

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 9efceb85 by Stefano Rivera at 2024-05-01T14:55:54-04:00 Triage of Python bugs that affect pypy3 Applied the same triage as was already applied to the relevant cPythons - - - - - 1 changed file:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3806-1 for distro-info-data

2024-05-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: fb03d35c by Stefano Rivera at 2024-05-01T10:16:22-04:00 Reserve DLA-3806-1 for distro-info-data - - - - - 1 changed file: - data/DLA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3639-1 and DLA-3640-1 for distro-info-data and distro-info updates

2023-10-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 4997e061 by Stefano Rivera at 2023-10-30T15:06:15+02:00 Reserve DLA-3639-1 and DLA-3640-1 for distro-info-data and distro-info updates - - - - - 1 changed file: - data/DLA/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-26112 has an MR fixing the bug

2023-06-03 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 1afdfb1a by Stefano Rivera at 2023-06-03T16:17:51-04:00 CVE-2023-26112 has an MR fixing the bug - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3411-1 for distro-info-data

2023-04-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: c7d637d8 by Stefano Rivera at 2023-04-30T21:44:23-04:00 Reserve DLA-3411-1 for distro-info-data - - - - - 1 changed file: - data/DLA/list Changes: =

[Git][security-tracker-team/security-tracker][master] wheel vendors python-packaging

2023-03-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: d1fb3ac0 by Stefano Rivera at 2023-03-30T14:50:55-04:00 wheel vendors python-packaging - - - - - 1 changed file: - data/embedded-code-copies Changes: =

[Git][security-tracker-team/security-tracker][master] Link to the commit that introduced the issue

2023-01-03 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: ef48ec50 by Stefano Rivera at 2023-01-03T10:38:10-04:00 Link to the commit that introduced the issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] More triage of current ceph issues

2023-01-02 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c926fc4 by Stefano Rivera at 2023-01-02T10:55:47-04:00 More triage of current ceph issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] buster isn't affected by CVE-2020-27839

2023-01-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 9871529d by Stefano Rivera at 2023-01-01T18:00:10-04:00 buster isnt affected by CVE-2020-27839 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Ignore CVE-2022-3287 for buster - vulnerable code was introduced later

2022-12-27 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a5e3bba by Stefano Rivera at 2022-12-27T12:02:25-04:00 Ignore CVE-2022-3287 for buster - vulnerable code was introduced later - - - - - ff193807 by Stefano Rivera at 2022-12-27T12:02:27-04:00 Take

[Git][security-tracker-team/security-tracker][master] Take fwupd

2022-11-16 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: d7159710 by Stefano Rivera at 2022-11-16T11:46:37+02:00 Take fwupd - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3175-1 for python3.7

2022-11-01 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 3c4e80d1 by Stefano Rivera at 2022-11-01T08:39:36+02:00 Reserve DLA-3175-1 for python3.7 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3174-1 for pysha3

2022-10-31 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: edf4189a by Stefano Rivera at 2022-10-31T12:44:44+02:00 Reserve DLA-3174-1 for pysha3 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Clarify pypy3.6 in history

2022-10-31 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 08647d86 by Stefano Rivera at 2022-10-31T11:30:16+02:00 Clarify pypy3.6 in history - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: Claim pysha3

2022-10-31 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 1cfaca81 by Stefano Rivera at 2022-10-31T11:24:39+02:00 Claim pysha3 - - - - - e14d8d98 by Stefano Rivera at 2022-10-31T11:24:53+02:00 Add and claim python3.7 (as discussed on IRC) - - - - - 1

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3171-1 for distro-info-data

2022-10-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: b6d44598 by Stefano Rivera at 2022-10-30T15:33:13+02:00 Reserve DLA-3171-1 for distro-info-data - - - - - 1 changed file: - data/DLA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Ignore CVE-2022-37454 for pypy3 in buster

2022-10-29 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 2aef89bf by Stefano Rivera at 2022-10-29T17:54:12+02:00 Ignore CVE-2022-37454 for pypy3 in buster - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] pypy3 is affected too

2022-10-29 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: a094c54e by Stefano Rivera at 2022-10-29T14:46:45+02:00 pypy3 is affected too - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Record netatalk status

2022-09-12 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: e18a68a1 by Stefano Rivera at 2022-09-12T13:27:31+02:00 Record netatalk status - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Ignore rsync for buster (whoops)

2022-08-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a26be31 by Stefano Rivera at 2022-08-30T16:39:50+02:00 Ignore rsync for buster (whoops) - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] ignore CVE-2022-29154 for bullseye - not reasonbly backportable

2022-08-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: bf0548c5 by Stefano Rivera at 2022-08-30T15:40:36+02:00 ignore CVE-2022-29154 for bullseye - not reasonbly backportable - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Take netatalk

2022-08-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 327dda4d by Stefano Rivera at 2022-08-30T12:01:54+02:00 Take netatalk - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 2 commits: Upstream issue for CVE-2022-35583

2022-08-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: cc90ce1e by Stefano Rivera at 2022-08-30T11:47:06+02:00 Upstream issue for CVE-2022-35583 - - - - - 354bd0fd by Stefano Rivera at 2022-08-30T11:52:05+02:00 Upstream hasnt looked at wkhtmltopdfs CVE

[Git][security-tracker-team/security-tracker][master] Don't think the rsync patch is reasonably backportable

2022-08-30 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: d99d0ed6 by Stefano Rivera at 2022-08-30T11:36:55+02:00 Dont think the rsync patch is reasonably backportable - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3078-1 for kicad

2022-08-20 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: f44b5ea8 by Stefano Rivera at 2022-08-20T17:34:21+02:00 Reserve DLA-3078-1 for kicad - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] I've already prepared kicad

2022-08-19 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: dcff1b5e by Stefano Rivera at 2022-08-19T15:51:47+02:00 Ive already prepared kicad - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Pick up rsync

2022-08-11 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 233bf106 by Stefano Rivera at 2022-08-11T14:14:20+02:00 Pick up rsync - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Pick up systemd

2022-06-07 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 4423db91 by Stefano Rivera at 2022-06-07T20:01:45+01:00 Pick up systemd - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Fixed CVE-2022-0577 in python-scrapy 2.6.1-1

2022-05-18 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 17823016 by Stefano Rivera at 2022-05-18T14:40:04-04:00 Fixed CVE-2022-0577 in python-scrapy 2.6.1-1 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3008-1 for openssl

2022-05-14 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: ba1454f9 by Stefano Rivera at 2022-05-14T20:55:24-04:00 Reserve DLA-3008-1 for openssl - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Take openssl

2022-05-14 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: a342e4b4 by Stefano Rivera at 2022-05-14T19:39:19-04:00 Take openssl - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3005-1 for lrzip

2022-05-13 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: d92e081f by Stefano Rivera at 2022-05-13T21:33:17-04:00 Reserve DLA-3005-1 for lrzip - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Take lrzip

2022-05-12 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: c22b582f by Stefano Rivera at 2022-05-12T18:50:58-04:00 Take lrzip - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3000-1 for waitress

2022-05-12 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: ba11c104 by Stefano Rivera at 2022-05-12T17:07:04-04:00 Reserve DLA-3000-1 for waitress - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Claim waitress

2022-05-09 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: feb881ca by Stefano Rivera at 2022-05-09T17:39:31-04:00 Claim waitress - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2998-1 for kicad

2022-05-09 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 38b86ce1 by Stefano Rivera at 2022-05-09T17:17:44-04:00 Reserve DLA-2998-1 for kicad - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Claim kicad

2022-05-08 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: a7a1803b by Stefano Rivera at 2022-05-08T16:46:40-04:00 Claim kicad - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Claim intel-microcode

2022-05-03 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 0775cb17 by Stefano Rivera at 2022-05-03T09:50:34-04:00 Claim intel-microcode - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2991-1 for twisted

2022-05-03 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e2db230 by Stefano Rivera at 2022-05-03T07:40:52-04:00 Reserve DLA-2991-1 for twisted - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2022-21716 is fixed in unstable

2022-04-22 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 946ed788 by Stefano Rivera at 2022-04-22T22:17:35-04:00 CVE-2022-21716 is fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: take twisted

2022-04-22 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: 69995c36 by Stefano Rivera at 2022-04-22T19:45:33-04:00 LTS: take twisted - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] pip 22 adds two vendored libs

2022-02-02 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: f1b2ca50 by Stefano Rivera at 2022-02-02T11:56:28-04:00 pip 22 adds two vendored libs - - - - - 1 changed file: - data/embedded-code-copies Changes: =

[Git][security-tracker-team/security-tracker][master] python2-pip's vendored modules

2022-01-29 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: c818bfa9 by Stefano Rivera at 2022-01-29T09:11:25-04:00 python2-pips vendored modules - - - - - 1 changed file: - data/embedded-code-copies Changes: =

[Git][security-tracker-team/security-tracker][master] 3 commits: virtualenv hasn't embedded pip since debian/20.0.20+ds-1

2022-01-16 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: ddd70855 by Stefano Rivera at 2022-01-16T10:44:05-04:00 virtualenv hasnt embedded pip since debian/20.0.20+ds-1 - - - - - 64edb42f by Stefano Rivera at 2022-01-16T11:03:38-04:00 python-pip now

[Git][security-tracker-team/security-tracker][master] CVE-2019-16935 was fixed in unstable

2021-05-23 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: daa961d3 by Stefano Rivera at 2021-05-23T07:55:02-04:00 CVE-2019-16935 was fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes: =