[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3857/libpng1.6

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 428fffd5 by Salvatore Bonaccorso at 2022-11-17T08:10:06+01:00 Add CVE-2022-3857/libpng1.6 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5279-2 for wordpress

2022-11-16 Thread Sebastien Delafond (@seb)
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: 6c2446c9 by Sébastien Delafond at 2022-11-17T08:03:43+01:00 Reserve DSA-5279-2 for wordpress - - - - - 1 changed file: - data/DSA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2020-25657/m2crypto via unstable

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: db741351 by Salvatore Bonaccorso at 2022-11-17T07:21:43+01:00 Track fixed version for CVE-2020-25657/m2crypto via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2020-25657/m2crypto

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8a285cc2 by Salvatore Bonaccorso at 2022-11-17T07:19:59+01:00 Reference upstream commit for CVE-2020-25657/m2crypto - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-3704/rails

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 56643c86 by Salvatore Bonaccorso at 2022-11-16T22:47:40+01:00 Add Debian bug reference for CVE-2022-3704/rails - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2021-34055/jhead

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eac6d10b by Salvatore Bonaccorso at 2022-11-16T22:32:56+01:00 Add Debian bug reference for CVE-2021-34055/jhead - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2022-2764/undertow

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f5648410 by Salvatore Bonaccorso at 2022-11-16T22:31:56+01:00 Update status for CVE-2022-2764/undertow - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a5aa3676 by Salvatore Bonaccorso at 2022-11-16T21:29:03+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-4018/rdiffweb

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 50a6da91 by Salvatore Bonaccorso at 2022-11-16T21:28:20+01:00 Add CVE-2022-4018/rdiffweb - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4adc7b52 by Salvatore Bonaccorso at 2022-11-16T21:18:18+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 91f5ab52 by security tracker role at 2022-11-16T20:10:16+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-42898/krb5

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4e33fee5 by Salvatore Bonaccorso at 2022-11-16T20:31:28+01:00 Add Debian bug reference for CVE-2022-42898/krb5 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] firefox-esr DSA

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 6cf6d54f by Moritz Mühlenhoff at 2022-11-16T19:50:40+01:00 firefox-esr DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2022-42898/heimdal: Reference pull request for regression which contains better details

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 27abb735 by Salvatore Bonaccorso at 2022-11-16T16:34:54+01:00 CVE-2022-42898/heimdal: Reference pull request for regression which contains better details - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Track regression report for CVE-2022-42898/heimdal

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fe43b6a9 by Salvatore Bonaccorso at 2022-11-16T16:12:33+01:00 Track regression report for CVE-2022-42898/heimdal - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-2166/mastodon

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f280d03 by Salvatore Bonaccorso at 2022-11-16T16:11:19+01:00 Add CVE-2022-2166/mastodon - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-41882/nextcloud-desktop

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 50919499 by Salvatore Bonaccorso at 2022-11-16T16:10:46+01:00 Add CVE-2022-41882/nextcloud-desktop - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3920/consul

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a48e2a46 by Salvatore Bonaccorso at 2022-11-16T16:10:17+01:00 Add CVE-2022-3920/consul - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 426e7541 by Salvatore Bonaccorso at 2022-11-16T16:09:22+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Revert "cargo not yet fixed in latest upload"

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d7366d5 by Moritz Muehlenhoff at 2022-11-16T15:17:29+01:00 Revert cargo not yet fixed in latest upload This reverts commit 76b08f2eaf67d08c67514331577bd1f0b4d5a93d. These are in fact fixed via

[Git][security-tracker-team/security-tracker][master] cargo not yet fixed in latest upload

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 76b08f2e by Moritz Muehlenhoff at 2022-11-16T15:13:14+01:00 cargo not yet fixed in latest upload - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-2978/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6334ac17 by Salvatore Bonaccorso at 2022-11-16T14:52:18+01:00 Update information for CVE-2022-2978/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] xen fixed in sid

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9dce62de by Moritz Muehlenhoff at 2022-11-16T14:35:00+01:00 xen fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-3564/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eaf64d44 by Salvatore Bonaccorso at 2022-11-16T14:27:01+01:00 Update information for CVE-2022-3564/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] cargo fixed in sid

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a67515a9 by Moritz Muehlenhoff at 2022-11-16T14:25:31+01:00 cargo fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-3619/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fac80d7e by Salvatore Bonaccorso at 2022-11-16T14:23:40+01:00 Update information for CVE-2022-3619/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-3640/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c17691b3 by Salvatore Bonaccorso at 2022-11-16T14:20:23+01:00 Update information for CVE-2022-3640/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-3903/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ce78a30a by Salvatore Bonaccorso at 2022-11-16T14:14:03+01:00 Update information for CVE-2022-3903/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1604946b by Moritz Muehlenhoff at 2022-11-16T14:07:33+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-40768/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1cfa351b by Salvatore Bonaccorso at 2022-11-16T14:01:25+01:00 Update information for CVE-2022-40768/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] firefox fixed in sid

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 597c53d8 by Moritz Muehlenhoff at 2022-11-16T13:34:36+01:00 firefox fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 16267b2d by Moritz Muehlenhoff at 2022-11-16T12:25:00+01:00 NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-41850/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 92de32ca by Salvatore Bonaccorso at 2022-11-16T12:04:23+01:00 Update information for CVE-2022-41850/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2022-41849/linux

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ef145bde by Salvatore Bonaccorso at 2022-11-16T11:54:20+01:00 Update status for CVE-2022-41849/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] update notes

2022-11-16 Thread Thorsten Alteholz (@alteholz)
+graphicsmagick (Thorsten Alteholz) NOTE: 20221027: Programming language: C. + NOTE: 20221116: testing package -- hsqldb NOTE: 20221031: Programming language: Java. @@ -386,7 +387,7 @@ vim (Helmut) NOTE: 20221108: Programming language: C. NOTE: 20221108: VCS: https://salsa.debian.org/lts

[Git][security-tracker-team/security-tracker][master] jupyterhub fixed in sid

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a7341097 by Moritz Muehlenhoff at 2022-11-16T11:05:43+01:00 jupyterhub fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] bullseye triage

2022-11-16 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d82dbd02 by Moritz Muehlenhoff at 2022-11-16T11:04:49+01:00 bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Take fwupd

2022-11-16 Thread Stefano Rivera (@stefanor)
Stefano Rivera pushed to branch master at Debian Security Tracker / security-tracker Commits: d7159710 by Stefano Rivera at 2022-11-16T11:46:37+02:00 Take fwupd - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3190-1 for grub2

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
) - NOTE: 20221116: Maintainer prepared as well buster-security updates for release --- hsqldb NOTE: 20221031: Programming language: Java. NOTE: 20221031: To be investigated further. A possible outcome is to ignore it. View it on GitLab: https://salsa.debian.org/security-tracker-team

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e6e43e84 by Salvatore Bonaccorso at 2022-11-16T09:37:27+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Triage CVE-2021-44420 in python-django for buster LTS.

2022-11-16 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 83f418a5 by Chris Lamb at 2022-11-16T08:35:32+00:00 Triage CVE-2021-44420 in python-django for buster LTS. - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add grub2 to dla needed list

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
: = data/dla-needed.txt = @@ -87,6 +87,9 @@ golang-websocket graphicsmagick NOTE: 20221027: Programming language: C. -- +grub2 (Salvatore Bonaccorso) + NOTE: 20221116: Maintainer prepared as well buster-security updates for release +-- hsqldb NOTE: 20221031

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2fb292f6 by Salvatore Bonaccorso at 2022-11-16T09:30:49+01:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-41916/heimdal which got retrospectively a CVE assigned

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4437527a by Salvatore Bonaccorso at 2022-11-16T09:26:41+01:00 Add CVE-2022-41916/heimdal which got retrospectively a CVE assigned - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-16 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 589281fb by security tracker role at 2022-11-16T08:10:19+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list