[Git][security-tracker-team/security-tracker][master] Remove excessive notes for slirp dla-needed entry

2020-09-07 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: bd78d7ae by Brian May at 2020-09-08T08:35:01+10:00 Remove excessive notes for slirp dla-needed entry - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 09dbe532 by security tracker role at 2020-09-07T20:10:23+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track proposed update for CVE-2020-7729 via buster-pu

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8996054e by Salvatore Bonaccorso at 2020-09-07T21:37:31+02:00 Track proposed update for CVE-2020-7729 via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-7729/grunt as no-dsa

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 30203754 by Salvatore Bonaccorso at 2020-09-07T21:36:20+02:00 Mark CVE-2020-7729/grunt as no-dsa - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-24916/yaws

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cde260c7 by Salvatore Bonaccorso at 2020-09-07T21:21:17+02:00 Add CVE-2020-24916/yaws - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-24379/yaws

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1fe381ce by Salvatore Bonaccorso at 2020-09-07T21:19:15+02:00 Add CVE-2020-24379/yaws - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] lemonldap-ng DSA

2020-09-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e0e0411e by Moritz Muehlenhoff at 2020-09-07T21:04:19+02:00 lemonldap-ng DSA - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for zeromq3 update

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b58d06e5 by Salvatore Bonaccorso at 2020-09-07T20:58:12+02:00 Reserve DSA number for zeromq3 update - - - - - 1 changed file: - data/DSA/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2020-15166/zeromq3

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 62ce6176 by Salvatore Bonaccorso at 2020-09-07T20:35:51+02:00 Reference upstream commit for CVE-2020-15166/zeromq3 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2020-12829/qemu: stretch not-affected

2020-09-07 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 9918f39f by Sylvain Beucler at 2020-09-07T19:55:34+02:00 CVE-2020-12829/qemu: stretch not-affected - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2020-15166/zeromq3 fixed in unstable

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1b7b1529 by Salvatore Bonaccorso at 2020-09-07T19:25:17+02:00 CVE-2020-15166/zeromq3 fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-15166/zeromq3

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 70fc4327 by Salvatore Bonaccorso at 2020-09-07T19:24:24+02:00 Add CVE-2020-15166/zeromq3 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2017-12670,imagemagick: postponed

2020-09-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f2537493 by Markus Koschany at 2020-09-07T19:08:01+02:00 CVE-2017-12670,imagemagick: postponed Upstream patch appears to be incomplete. Needs further investigation. - - - - - 2 changed files: -

[Git][security-tracker-team/security-tracker][master] CVE-2019-5008/qemu: stretch ignored->not-affected

2020-09-07 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 0623e8f1 by Sylvain Beucler at 2020-09-07T17:54:21+02:00 CVE-2019-5008/qemu: stretch ignored-not-affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Revert "Reserve DLA-2368-1 for lemonldap-ng" (duplication)

2020-09-07 Thread Xavier Guimard
Xavier Guimard pushed to branch master at Debian Security Tracker / security-tracker Commits: c3bcb2b1 by Xavier Guimard at 2020-09-07T17:20:59+02:00 Revert Reserve DLA-2368-1 for lemonldap-ng (duplication) This reverts commit f19eebce6170dd86df1d5540a554fcf6db3011b4. - - - - - 1 changed

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2368-1 for lemonldap-ng

2020-09-07 Thread Xavier Guimard
Xavier Guimard pushed to branch master at Debian Security Tracker / security-tracker Commits: f19eebce by Xavier Guimard at 2020-09-07T17:20:16+02:00 Reserve DLA-2368-1 for lemonldap-ng - - - - - 1 changed file: - data/DLA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2367-1 for lemonldap-ng

2020-09-07 Thread Xavier Guimard
= @@ -92,9 +92,6 @@ jupyter-notebook -- kleopatra -- -lemonldap-ng - NOTE: 20200907: Vulnerable to CVE-2020-24660 --- libxml2 (Markus Koschany) -- linux (Ben Hutchings) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit

[Git][security-tracker-team/security-tracker][master] Update dla-needed.txt: add lemonldap-ng

2020-09-07 Thread Xavier Guimard
: = data/dla-needed.txt = @@ -92,6 +92,9 @@ jupyter-notebook -- kleopatra -- +lemonldap-ng + NOTE: 20200907: Vulnerable to CVE-2020-24660 +-- libxml2 (Markus Koschany) -- linux (Ben Hutchings) View it on GitLab: https://salsa.debian.org/security-tracker-team

[Git][security-tracker-team/security-tracker][master] CVE-2017-11334/qemu: postponed->ignored

2020-09-07 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 4af34862 by Sylvain Beucler at 2020-09-07T15:56:51+02:00 CVE-2017-11334/qemu: postponed-ignored - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] qemu/CVE-2019-12067: 1 year later, no news

2020-09-07 Thread Sylvain Beucler
/2019-08/msg01358.html - NOTE: patch not sanctioned as of 20190909 + NOTE: patch not sanctioned as of 20200907 NOTE: patched function introduced in 2014/2.1.50 but affected code pre-existed NOTE: https://github.com/qemu/qemu/commit/659142ecf71a0da240ab0ff7cf929ee25c32b9bc

[Git][security-tracker-team/security-tracker][master] LTS: claim gnutls28, shiro

2020-09-07 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 5295d431 by Roberto C. Sánchez at 2020-09-07T07:54:01-04:00 LTS: claim gnutls28, shiro - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 6 commits: data/dla-needed.txt: Triage gnutls28 for stretch LTS.

2020-09-07 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e4ca473 by Chris Lamb at 2020-09-07T12:38:33+01:00 data/dla-needed.txt: Triage gnutls28 for stretch LTS. - - - - - 0e8743f7 by Chris Lamb at 2020-09-07T12:39:04+01:00 data/dla-needed.txt: Triage grunt

[Git][security-tracker-team/security-tracker][master] CVE-2020-16093 and CVE-2020-24660 adressed in unstable

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b17f95d by Salvatore Bonaccorso at 2020-09-07T12:37:04+02:00 CVE-2020-16093 and CVE-2020-24660 adressed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-24660/lemonldap-ng

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e10fcce9 by Salvatore Bonaccorso at 2020-09-07T10:53:55+02:00 Add CVE-2020-24660/lemonldap-ng - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2020-09-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0047763e by security tracker role at 2020-09-07T08:10:16+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] reclaim curl

2020-09-07 Thread Thorsten Alteholz
) + NOTE: 20200907: testing package (thorsten) -- eclipse-wtp -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/875c585979f510bfa3595b47ef2ff8fe84d7a6ba -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-09-07 Thread Holger Levsen
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker Commits: 40e150ba by Holger Levsen at 2020-09-07T09:00:17+02:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Holger Levsen hol...@layer-acht.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2366-1 for imagemagick

2020-09-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a86ab3d by Markus Koschany at 2020-09-07T08:39:24+02:00 Reserve DLA-2366-1 for imagemagick - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Remove four remaining no-dsa tags from imagemagick CVE.

2020-09-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3579fede by Markus Koschany at 2020-09-07T08:23:17+02:00 Remove four remaining no-dsa tags from imagemagick CVE. - - - - - 1 changed file: - data/CVE/list Changes: