[Git][security-tracker-team/security-tracker][master] Track proposed update for exiv2 via buster-pu

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 36d6bfb2 by Salvatore Bonaccorso at 2020-06-24T07:25:38+02:00 Track proposed update for exiv2 via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-14940/tuxguitar

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e050657c by Salvatore Bonaccorso at 2020-06-24T07:23:52+02:00 Add CVE-2020-14940/tuxguitar - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-14976/gns3-server

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9ea3ba6a by Salvatore Bonaccorso at 2020-06-24T07:21:54+02:00 Add CVE-2020-14976/gns3-server - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 16ef174f by Salvatore Bonaccorso at 2020-06-24T07:21:03+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 855ea9a9 by security tracker role at 2020-06-23T20:10:25+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add note on docker.io pending DSA

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a81844d by Salvatore Bonaccorso at 2020-06-23T21:21:38+02:00 Add note on docker.io pending DSA - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-14148/ngircd as unfixed

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a8baa779 by Salvatore Bonaccorso at 2020-06-23T20:47:01+02:00 Mark CVE-2020-14148/ngircd as unfixed - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla: claim rails again (thanks alteholz)

2020-06-23 Thread Sylvain Beucler
: = data/dla-needed.txt = @@ -115,8 +115,7 @@ qemu (Adrian Bunk) NOTE: 20200531: waiting for CVE-2020-13362 fix to be applied upstream (bunk) NOTE: 20200615: work is ongoing (bunk) -- -rails - NOTE: 20200623: probably Sylvain wants to do this upload as he

[Git][security-tracker-team/security-tracker][master] CVE-2020-8163/rails: clarify a bit

2020-06-23 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: e6c69b7b by Sylvain Beucler at 2020-06-23T17:49:24+02:00 CVE-2020-8163/rails: clarify a bit - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2020-8163/rails: clarify a bit

2020-06-23 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c4d2e7e by Sylvain Beucler at 2020-06-23T17:48:13+02:00 CVE-2020-8163/rails: clarify a bit - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] python3.4: tidy statuses

2020-06-23 Thread Sylvain Beucler
-needed.txt = @@ -109,6 +109,7 @@ pound NOTE: 20200619: No explicit patch mentioned. Needs deeper research. -- python3.4 (Sylvain Beucler) + NOTE: 20200623: waiting for CVE-2020-14422's patch to be approved upstream -- qemu (Adrian Bunk) NOTE: 20200531

[Git][security-tracker-team/security-tracker][master] CVE-2020-XXXX for wordpress's comment leak is fixed by 5.0.10+dfsg1-0+deb10u1

2020-06-23 Thread Sebastien Delafond
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: a30aefc3 by Sébastien Delafond at 2020-06-23T16:16:00+02:00 CVE-2020- for wordpresss comment leak is fixed by 5.0.10+dfsg1-0+deb10u1 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add WIP note for wordpress

2020-06-23 Thread Utkarsh Gupta
-needed.txt = @@ -144,6 +144,7 @@ unbound NOTE: 20200616: https://lists.debian.org/debian-lts/2020/06/msg00038.html (bam) -- wordpress (Utkarsh Gupta) + NOTE: 20200623: WIP. (utkarsh) -- wpa -- View it on GitLab: https://salsa.debian.org/security-tracker

[Git][security-tracker-team/security-tracker][master] Claim jackson-databind

2020-06-23 Thread Utkarsh Gupta
= @@ -54,8 +54,8 @@ glib-networking imagemagick (Markus Koschany) NOTE: 20200622: Ongoing work -- -jackson-databind - NOTE: 20200623: probably Markus or Utkarsh want to do the upload +jackson-databind (Utkarsh Guta) + NOTE: 20200623: probably Markus

[Git][security-tracker-team/security-tracker][master] 3 commits: add rails

2020-06-23 Thread Thorsten Alteholz
-core-2020-002 = data/dla-needed.txt = @@ -54,6 +54,9 @@ glib-networking imagemagick (Markus Koschany) NOTE: 20200622: Ongoing work -- +jackson-databind + NOTE: 20200623: probably Markus or Utkarsh want to do the upload

[Git][security-tracker-team/security-tracker][master] Reserve DSA-4709-1 for wordpress

2020-06-23 Thread Sebastien Delafond
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: c3f8d1df by Sébastien Delafond at 2020-06-23T15:29:19+02:00 Reserve DSA-4709-1 for wordpress - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2014-9365/python3.4: jessie triage precision

2020-06-23 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: d05c3a06 by Sylvain Beucler at 2020-06-23T15:27:11+02:00 CVE-2014-9365/python3.4: jessie triage precision - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] updates reported by ebourg: thanks!

2020-06-23 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 61cc5fbe by Moritz Muehlenhoff at 2020-06-23T14:44:22+02:00 updates reported by ebourg: thanks! - one libhibernate-validator-java issue n/a - fix source package name for a different Hibernate

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-10769/linux

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f8c2b457 by Salvatore Bonaccorso at 2020-06-23T14:35:53+02:00 Add CVE-2020-10769/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add reference for CVE-2020-11989/shiro

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ca3d6156 by Salvatore Bonaccorso at 2020-06-23T14:29:06+02:00 Add reference for CVE-2020-11989/shiro - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2019-17533/libmatio fixed in unstable

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e19ac7fe by Salvatore Bonaccorso at 2020-06-23T10:34:02+02:00 CVE-2019-17533/libmatio fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Four adplug issues now really fixed in experimental

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b062666c by Salvatore Bonaccorso at 2020-06-23T10:33:04+02:00 Four adplug issues now really fixed in experimental - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new chromium issue fixed in sid

2020-06-23 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 08a1417b by Moritz Muehlenhoff at 2020-06-23T10:00:37+02:00 new chromium issue fixed in sid jpeg triage - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add some more FreeRDP issues

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e54d5d2 by Salvatore Bonaccorso at 2020-06-23T09:31:49+02:00 Add some more FreeRDP issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add four new freerdp issues

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 33c6a995 by Salvatore Bonaccorso at 2020-06-23T09:29:13+02:00 Add four new freerdp issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-13844 initial information

2020-06-23 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2d3b1ea6 by Salvatore Bonaccorso at 2020-06-23T09:11:41+02:00 Add CVE-2020-13844 initial information - - - - - 1 changed file: - data/CVE/list Changes: