[Git][security-tracker-team/security-tracker][master] Fix ordering

2022-05-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 7515c2ae by Markus Koschany at 2022-05-23T00:06:40+02:00 Fix ordering - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Processing 2ca061f879b47aba252839d288e47fa0309f74b9 failed

2022-05-22 Thread security tracker role
The error message was: data/CVE/list:99316: release note must follow its package note make: *** [Makefile:19: all] Error 1 ___ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net

[Git][security-tracker-team/security-tracker][master] Mark all open ansible CVE in Stretch as EOL

2022-05-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ca061f8 by Markus Koschany at 2022-05-23T00:02:35+02:00 Mark all open ansible CVE in Stretch as EOL - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] update note

2022-05-22 Thread Thorsten Alteholz (@alteholz)
= @@ -83,7 +83,7 @@ liblouis NOTE: 20220503: Patch not applied upstream yet. -- libvirt (Thorsten Alteholz) - NOTE: 20220508: testing package + NOTE: 20220522: testing package -- linux (Ben Hutchings) -- View it on GitLab: https://salsa.debian.org

[Git][security-tracker-team/security-tracker][master] Added firefox-esr to dla-needed. It looks serious enough to not halt any...

2022-05-22 Thread Ola Lundqvist (@opal)
. -- +firefox-esr + NOTE: 20220522: From the description this looks criticial. Did not check whether the code is vulnerable or not. Leaving that to someone else. +-- firmware-nonfree NOTE: 20210731: WIP: https://salsa.debian.org/lts-team/packages/firmware-nonfree NOTE: 20210828: Most CVEs

[Git][security-tracker-team/security-tracker][master] 2 commits: libspring-java no longer supported for stretch. Marking CVE-2022-22970 and...

2022-05-22 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: e00cb9f6 by Ola Lundqvist at 2022-05-22T23:07:38+02:00 libspring-java no longer supported for stretch. Marking CVE-2022-22970 and CVE-2022-22971 accordingly. - - - - - a282c886 by Ola Lundqvist at

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3019-1 for admesh

2022-05-22 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: 01520eb3 by Anton Gladky at 2022-05-22T23:07:09+02:00 Reserve DLA-3019-1 for admesh - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Remove ansible from dla-needed.txt.

2022-05-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 99076357 by Markus Koschany at 2022-05-22T22:46:08+02:00 Remove ansible from dla-needed.txt. As discussed on our private mailing list, due to the lack of an effective test suite ansible cannot be

[Git][security-tracker-team/security-tracker][master] CVE-2021-45101,condor: ignored for Buster

2022-05-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: eb513872 by Markus Koschany at 2022-05-22T22:25:35+02:00 CVE-2021-45101,condor: ignored for Buster The patch is too intrusive - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6de00bfd by security tracker role at 2022-05-22T20:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5144-1 condor

2022-05-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: eed4372b by Markus Koschany at 2022-05-22T22:04:28+02:00 Reserve DSA-5144-1 condor - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for three nvidia-graphics-drivers-tesla-450 CVEs fixed via unstable

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 90c7ee1c by Salvatore Bonaccorso at 2022-05-22T20:41:38+02:00 Track fixed version for three nvidia-graphics-drivers-tesla-450 CVEs fixed via unstable - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add DSA entry for DSA-5143-1

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a9f7280 by Salvatore Bonaccorso at 2022-05-22T20:38:32+02:00 Add DSA entry for DSA-5143-1 - - - - - 1 changed file: - data/DSA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Fix typo in CVE ID

2022-05-22 Thread Utkarsh Gupta (@utkarsh)
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: c963b3c9 by Utkarsh Gupta at 2022-05-22T23:39:38+05:30 Fix typo in CVE ID - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2021-23409/golang-github-pires-go-proxyproto via unstable

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 75ec12ee by Salvatore Bonaccorso at 2022-05-22T16:47:15+02:00 Track fixed version for CVE-2021-23409/golang-github-pires-go-proxyproto via unstable - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] php-dompdf: Even unstable has a version before CVE-2022-28368 was introduced

2022-05-22 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 19b4fe9a by Adrian Bunk at 2022-05-22T16:03:36+03:00 php-dompdf: Even unstable has a version before CVE-2022-28368 was introduced - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-1809/radare2

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a87bedbd by Salvatore Bonaccorso at 2022-05-22T11:08:21+02:00 Add CVE-2022-1809/radare2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 78cd9cb7 by Salvatore Bonaccorso at 2022-05-22T11:07:51+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: Add note for trafficserver in dsa-needed list

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 562f6bfe by Salvatore Bonaccorso at 2022-05-22T11:01:28+02:00 Add note for trafficserver in dsa-needed list - - - - - 125fd853 by Salvatore Bonaccorso at 2022-05-22T11:02:18+02:00 Add note for

[Git][security-tracker-team/security-tracker][master] 2 commits: Track proposed update for python-scrapy via buster-pu

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b2c7bf0e by Salvatore Bonaccorso at 2022-05-22T10:56:17+02:00 Track proposed update for python-scrapy via buster-pu - - - - - b1640202 by Salvatore Bonaccorso at 2022-05-22T10:57:10+02:00

[Git][security-tracker-team/security-tracker][master] Mark CVE-2022-0577 as no-dsa for bullseye and buster

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 17537c1a by Salvatore Bonaccorso at 2022-05-22T10:55:32+02:00 Mark CVE-2022-0577 as no-dsa for bullseye and buster - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for libxml2 update

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 201c0807 by Salvatore Bonaccorso at 2022-05-22T10:39:28+02:00 Reserve DSA number for libxml2 update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-05-22 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a01929d7 by security tracker role at 2022-05-22T08:10:11+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list