[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 13bf1151 by Salvatore Bonaccorso at 2022-11-09T07:56:49+01:00 Add chromium to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add new chromium issues

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b9d7bc9 by Salvatore Bonaccorso at 2022-11-09T07:55:50+01:00 Add new chromium issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: claim graphicsmagick

2022-11-08 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c44a1dd by Thorsten Alteholz at 2022-11-08T23:47:09+01:00 claim graphicsmagick - - - - - 56e94243 by Thorsten Alteholz at 2022-11-09T00:20:08+01:00 claim ntfs-3g - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for libbpf issues

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a8aba6c by Salvatore Bonaccorso at 2022-11-08T23:14:22+01:00 Add Debian bug reference for libbpf issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] fix up one entry

2022-11-08 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 10f31aaf by Moritz Muehlenhoff at 2022-11-08T22:20:44+01:00 fix up one entry - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] take php7.4/php-cas, add pixman

2022-11-08 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 63d6d0a8 by Moritz Mühlenhoff at 2022-11-08T22:13:45+01:00 take php7.4/php-cas, add pixman - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-36077/electron

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2fd8cd97 by Salvatore Bonaccorso at 2022-11-08T22:00:17+01:00 Add CVE-2022-36077/electron - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b563796 by Salvatore Bonaccorso at 2022-11-08T21:57:43+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 724450e2 by Salvatore Bonaccorso at 2022-11-08T21:33:12+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 07c5fb1e by Salvatore Bonaccorso at 2022-11-08T21:21:10+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Correct association for CVE-2022-34556 to PicoC

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ed7ddb08 by Salvatore Bonaccorso at 2022-11-08T21:17:09+01:00 Correct association for CVE-2022-34556 to PicoC - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f7e7b05b by Salvatore Bonaccorso at 2022-11-08T21:15:13+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c38c374a by security tracker role at 2022-11-08T20:10:28+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information according to XSA-422

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 729ac14a by Salvatore Bonaccorso at 2022-11-08T21:08:18+01:00 Update information according to XSA-422 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for CVE-2021-37789/libstb

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 00168749 by Salvatore Bonaccorso at 2022-11-08T20:54:46+01:00 Add Debian bug reference for CVE-2021-37789/libstb - - - - - bce19224 by Salvatore Bonaccorso at 2022-11-08T21:01:18+01:00 Mark

[Git][security-tracker-team/security-tracker][master] dla: add qemu

2022-11-08 Thread Sylvain Beucler (@beuc)
-45116 (lamby) -- +qemu + NOTE: 20221108: Programming language: C. + NOTE: 20221108: I updated the status of all opened (minor) CVEs to more clearly state whether we can fix or are waiting for a patch, + NOTE: 20221108: there's about half of them that can be fixed (or definitely ignored if we

[Git][security-tracker-team/security-tracker][master] webkit2gtk DSA-5273-1 and wpewebkit DSA-5274-1

2022-11-08 Thread Alberto Garcia (@berto)
Alberto Garcia pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f1fc72e by Alberto Garcia at 2022-11-08T18:48:10+01:00 webkit2gtk DSA-5273-1 and wpewebkit DSA-5274-1 - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] qemu: update buster triage 2019-2020 for LTS

2022-11-08 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 7563bbe4 by Sylvain Beucler at 2022-11-08T17:57:30+01:00 qemu: update buster triage 2019-2020 for LTS - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Add vim to dla-needed.txt

2022-11-08 Thread Markus Koschany (@apo)
: Programming language: Python. -- +vim + NOTE: 20221108: Programming language: C. + NOTE: 20221108: VCS: https://salsa.debian.org/lts-team/packages/vim.git +-- virglrenderer (Thorsten Alteholz) NOTE: 20221009: Programming language: C. -- View it on GitLab: https://salsa.debian.org/security

[Git][security-tracker-team/security-tracker][master] Triage CVE of vim/buster

2022-11-08 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e24d0f6 by Markus Koschany at 2022-11-08T16:18:04+01:00 Triage CVE of vim/buster Triage several CVE as not affected because the vulnerable code was introduced later - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] lts: take webkit2gtk

2022-11-08 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: ad21c7ea by Emilio Pozuelo Monfort at 2022-11-08T15:44:53+01:00 lts: take webkit2gtk - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3182-1 for vim

2022-11-08 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: e709418e by Markus Koschany at 2022-11-08T15:40:35+01:00 Reserve DLA-3182-1 for vim - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] qemu: update buster triage 2021-2022 for LTS

2022-11-08 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 2e85e39d by Sylvain Beucler at 2022-11-08T14:14:18+01:00 qemu: update buster triage 2021-2022 for LTS - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 65770c45 by Salvatore Bonaccorso at 2022-11-08T13:13:59+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2022-3872/qemu: buster postponed

2022-11-08 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 81631ea8 by Sylvain Beucler at 2022-11-08T12:16:33+01:00 CVE-2022-3872/qemu: buster postponed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] dla: phpseclib,php-phpseclib: update status

2022-11-08 Thread Sylvain Beucler (@beuc)
. 02cd83d1d917dc5964440185226aa11e40058546) (Beuc) + NOTE: 20221108: buster is missing testsuite in both phpseclib packages, contacted maintainer to decide whether to backport testsuite or just bump version (Beuc) -- php7.3 NOTE: 20221031: Programming language: C. @@ -199,7 +201,9 @@ php7.3 -- phpseclib (Sylvain

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1065b6a6 by security tracker role at 2022-11-08T08:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list