[Git][security-tracker-team/security-tracker][master] 2 commits: mark CVE-2021-45387 and CVE-2021-45386 as no-dsa for Stretch

2022-02-11 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: a262ca76 by Thorsten Alteholz at 2022-02-12T01:42:08+01:00 mark CVE-2021-45387 and CVE-2021-45386 as no-dsa for Stretch - - - - - 99fdff73 by Thorsten Alteholz at 2022-02-12T01:43:59+01:00 add

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-23633/rails

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 817094ac by Salvatore Bonaccorso at 2022-02-11T22:55:15+01:00 Add CVE-2022-23633/rails - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-0485/libnbd via unstable

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a64a4d3 by Salvatore Bonaccorso at 2022-02-11T22:41:10+01:00 Track fixed version for CVE-2022-0485/libnbd via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2022-0562/tiff

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 19bd902e by Salvatore Bonaccorso at 2022-02-11T22:31:47+01:00 Add CVE-2022-0562/tiff - - - - - 1e37222e by Salvatore Bonaccorso at 2022-02-11T22:31:47+01:00 Add CVE-2022-0561/tiff - - - - -

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2918-1 for debian-edu-config

2022-02-11 Thread Utkarsh Gupta (@utkarsh)
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: d461aee3 by Utkarsh Gupta at 2022-02-12T02:59:14+05:30 Reserve DLA-2918-1 for debian-edu-config - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4538{6,7}/tcpreplay

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 532955d3 by Salvatore Bonaccorso at 2022-02-11T22:20:39+01:00 Add CVE-2021-4538{6,7}/tcpreplay - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2022-24111/mahara

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f7e4672f by Salvatore Bonaccorso at 2022-02-11T21:56:46+01:00 Add CVE-2022-24111/mahara - - - - - d5acaef9 by Salvatore Bonaccorso at 2022-02-11T21:57:17+01:00 Add CVE-2021-45357/piwigo - - -

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 617caa02 by Salvatore Bonaccorso at 2022-02-11T21:56:17+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-24975/git

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 88d2a52f by Salvatore Bonaccorso at 2022-02-11T21:39:14+01:00 Add CVE-2022-24975/git - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 39d3d8d1 by security tracker role at 2022-02-11T20:10:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-45402/linux

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 125d8905 by Salvatore Bonaccorso at 2022-02-11T20:40:44+01:00 Add CVE-2021-45402/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add reference for CVE-2022-0516/linux

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fb52df6a by Salvatore Bonaccorso at 2022-02-11T20:21:33+01:00 Add reference for CVE-2022-0516/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark golang-1.15 and golang-1.11 issues as no-dsa

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7d3b4f7d by Salvatore Bonaccorso at 2022-02-11T19:43:19+01:00 Mark golang-1.15 and golang-1.11 issues as no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed updates for golang-1.15 via bullseye-pu

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ad6e9cca by Salvatore Bonaccorso at 2022-02-11T19:41:26+01:00 Track proposed updates for golang-1.15 via bullseye-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] debian-edu-config DSA

2022-02-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bbf091f4 by Moritz Mühlenhoff at 2022-02-11T19:21:18+01:00 debian-edu-config DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] various spus

2022-02-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ae36bdf0 by Moritz Mühlenhoff at 2022-02-11T17:09:24+01:00 various spus - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reassign the WSA entries to the CVE's from 2022

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0b82fe8c by Salvatore Bonaccorso at 2022-02-11T16:38:46+01:00 Reassign the WSA entries to the CVEs from 2022 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add reference for CVE-2021-0145

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a0d64b0a by Salvatore Bonaccorso at 2022-02-11T16:29:00+01:00 Add reference for CVE-2021-0145 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for golang CVE-2022-23806 CVE-2022-23772 CVE-2022-23773 via unstable

2022-02-11 Thread Shengjing Zhu (@zhsj)
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: f18b018c by Shengjing Zhu at 2022-02-11T23:23:03+08:00 Track fixed version for golang CVE-2022-23806 CVE-2022-23772 CVE-2022-23773 via unstable - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2022-02-11 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 187995cc by Moritz Muehlenhoff at 2022-02-11T16:16:04+01:00 NFUs jhead unimportant - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs for Cisco Small Business RV Series Routers

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 96288122 by Neil Williams at 2022-02-11T14:53:08+00:00 Process NFUs for Cisco Small Business RV Series Routers - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2021-3284{0-2}/mono add extra note

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 76e69584 by Neil Williams at 2022-02-11T14:45:55+00:00 CVE-2021-3284{0-2}/mono add extra note - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Resolve CVE-2021-3284{0-2}/mono not-affected - vulnerable code not yet uploaded

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 6d8a2700 by Neil Williams at 2022-02-11T14:39:11+00:00 Resolve CVE-2021-3284{0-2}/mono not-affected - vulnerable code not yet uploaded - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for samba update

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 14d0a53a by Salvatore Bonaccorso at 2022-02-11T15:38:19+01:00 Reserve DSA number for samba update - - - - - 3 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: e9586264 by Neil Williams at 2022-02-11T14:14:20+00:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0554/vim

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d5262361 by Salvatore Bonaccorso at 2022-02-11T15:10:20+01:00 Add CVE-2022-0554/vim - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2022-0538/jenkins

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 22b60392 by Salvatore Bonaccorso at 2022-02-11T14:51:54+01:00 Add CVE-2022-0538/jenkins - - - - - 32127fcd by Salvatore Bonaccorso at 2022-02-11T14:51:56+01:00 Add CVE-2022-0534/htmldoc - - -

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 2551d479 by Neil Williams at 2022-02-11T13:48:55+00:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process a few NFUs

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a68a2483 by Salvatore Bonaccorso at 2022-02-11T14:48:15+01:00 Process a few NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Sync CVE-2022-24958/linux triage with kernel-sec

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8e237139 by Salvatore Bonaccorso at 2022-02-11T14:43:59+01:00 Sync CVE-2022-24958/linux triage with kernel-sec - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 432f481a by Neil Williams at 2022-02-11T13:40:10+00:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-24959/linux

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eb1645b4 by Salvatore Bonaccorso at 2022-02-11T14:36:19+01:00 Add CVE-2022-24959/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add one NFU

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c7238e7 by Salvatore Bonaccorso at 2022-02-11T14:29:21+01:00 Add one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Adjust tracking for fixed versison of CVE-2020-26208/jhead

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 931b8814 by Salvatore Bonaccorso at 2022-02-11T14:21:13+01:00 Adjust tracking for fixed versison of CVE-2020-26208/jhead - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark libmobi issues as not affected according to the triage

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3bead019 by Salvatore Bonaccorso at 2022-02-11T14:09:14+01:00 Mark libmobi issues as not affected according to the triage As per aaba7c3a09b87f99af6f12f7929c38ce7d14930b the issues are not

[Git][security-tracker-team/security-tracker][master] CVE-2020-26208/jhead 1:3.04-2 (bug #953352)

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 2eed71cd by Neil Williams at 2022-02-11T11:14:03+00:00 CVE-2020-26208/jhead 1:3.04-2 (bug #953352) - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process 2 NFUs

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: 771b18aa by Neil Williams at 2022-02-11T10:54:35+00:00 Process 2 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-1143{2-8}/libmobi tested in sid

2022-02-11 Thread Neil Williams (@codehelp)
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker Commits: aaba7c3a by Neil Williams at 2022-02-11T10:37:59+00:00 CVE-2018-1143{2-8}/libmobi tested in sid 0.9+dfsg1-1 provides the mobitool binary that is described in the CVE disclosure. The poc.zip provides

[Git][security-tracker-team/security-tracker][master] lts: add note on pgbouncer

2022-02-11 Thread Emilio Pozuelo Monfort (@pochu)
: = data/dla-needed.txt = @@ -63,6 +63,7 @@ nvidia-graphics-drivers -- pgbouncer (Emilio) NOTE: 20220104: maintainer might want to upload fixed version + NOTE: 20220211: talked to maintainer, will handle the update (pochu) -- pjproject (Abhijith PA) NOTE

[Git][security-tracker-team/security-tracker][master] lts: take pgbouncer

2022-02-11 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 6bede624 by Emilio Pozuelo Monfort at 2022-02-11T09:50:12+01:00 lts: take pgbouncer - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Remove association of CVE-2022-21291 to openjdk-8

2022-02-11 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: afaa4a09 by Emilio Pozuelo Monfort at 2022-02-11T09:30:43+01:00 Remove association of CVE-2022-21291 to openjdk-8 The Oracle advisory said Oracle Java 8u and 7u were affected, but OpenJDK 8u

[Git][security-tracker-team/security-tracker][master] automatic update

2022-02-11 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 20f03539 by security tracker role at 2022-02-11T08:10:10+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list