[Git][security-tracker-team/security-tracker][master] Reserve DLA-3426-3 for netatalk

2023-08-13 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: a4c80589 by Markus Koschany at 2023-08-13T23:35:48+02:00 Reserve DLA-3426-3 for netatalk - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0de458a1 by security tracker role at 2023-08-13T20:12:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] update notes

2023-08-13 Thread Thorsten Alteholz (@alteholz)
= @@ -23,6 +23,7 @@ rather than remove/replace existing ones. -- amanda (Thorsten Alteholz) NOTE: 20230730: Added by Front-Desk (apo) + NOTE: 20230813: testing packages (ta) -- cairosvg (gladk) NOTE: 20230323: Added by Front-Desk (gladk) @@ -197,7 +198,7

[Git][security-tracker-team/security-tracker][master] 2 commits: Fix typo in CVE identifier for DLA-3526-1/libreoffice

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8cec7480 by Salvatore Bonaccorso at 2023-08-13T20:30:23+02:00 Fix typo in CVE identifier for DLA-3526-1/libreoffice - - - - - 7383f789 by Salvatore Bonaccorso at 2023-08-13T20:30:55+02:00

[Git][security-tracker-team/security-tracker][master] Slightly wrap longer note line

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: abf132f2 by Salvatore Bonaccorso at 2023-08-13T19:06:46+02:00 Slightly wrap longer note line - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3527-1 for sox

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 73ae2bce by Bastien Roucariès at 2023-08-13T17:02:25+00:00 Reserve DLA-3527-1 for sox - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Claim sox

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 1577786f by Bastien Roucariès at 2023-08-13T17:00:46+00:00 Claim sox - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3526-1 for libreoffice

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c65308d by Bastien Roucariès at 2023-08-13T16:24:29+00:00 Reserve DLA-3526-1 for libreoffice - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] LTS: take orthanc

2023-08-13 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: 55e76921 by Anton Gladky at 2023-08-13T17:53:16+02:00 LTS: take orthanc - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Add a note about the POC upstream of CVE-2023-32627

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a7f1062 by Bastien Roucariès at 2023-08-13T14:46:29+00:00 Add a note about the POC upstream of CVE-2023-32627 Note that a previous fix render upstream POC unusble for testing but FPE is still

[Git][security-tracker-team/security-tracker][master] Claim lxc in dla-needed.txt

2023-08-13 Thread Santiago R.R. (@santiago)
Santiago R.R. pushed to branch master at Debian Security Tracker / security-tracker Commits: 1b3c6b2a by Santiago Ruano Rincón at 2023-08-13T11:10:55-03:00 Claim lxc in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-3153/ovn

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0f3a820a by Salvatore Bonaccorso at 2023-08-13T14:55:57+02:00 Add Debian bug reference for CVE-2023-3153/ovn - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-34318: fixed by same fix as CVE-2021-23159

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 55f0616d by Bastien Roucariès at 2023-08-13T12:50:48+00:00 CVE-2023-34318: fixed by same fix as CVE-2021-23159 Tested poc under trixie and gdb tracing. Fail early (before the location of leak)

[Git][security-tracker-team/security-tracker][master] Add todo item for CVE-2023-34318

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b5297b6 by Salvatore Bonaccorso at 2023-08-13T13:55:06+02:00 Add todo item for CVE-2023-34318 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add note for CVE-2023-34432

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e46880b1 by Salvatore Bonaccorso at 2023-08-13T13:48:51+02:00 Add note for CVE-2023-34432 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for CVE-2022-23537 and CVE-2022-23547

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c015380 by Salvatore Bonaccorso at 2023-08-13T13:13:15+02:00 Track fixed version via unstable for CVE-2022-23537 and CVE-2022-23547 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-27585/asterisk via unstable

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d6b5000e by Salvatore Bonaccorso at 2023-08-13T13:10:58+02:00 Track fixed version for CVE-2023-27585/asterisk via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-34432

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d8072c4 by Salvatore Bonaccorso at 2023-08-13T13:00:00+02:00 Update information for CVE-2023-34432 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add todo item for CVE-2023-34432

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38a0a716 by Salvatore Bonaccorso at 2023-08-13T12:38:50+02:00 Add todo item for CVE-2023-34432 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-26590

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a8c108ea by Salvatore Bonaccorso at 2023-08-13T12:30:53+02:00 Update information for CVE-2023-26590 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] LTS: claim flask-security in dla-needed.txt

2023-08-13 Thread Sean Whitton (@spwhitton)
Sean Whitton pushed to branch master at Debian Security Tracker / security-tracker Commits: 825f954a by Sean Whitton at 2023-08-13T11:27:08+01:00 LTS: claim flask-security in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process CVE-2023-4265 as NFU

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 746de173 by Salvatore Bonaccorso at 2023-08-13T12:25:09+02:00 Process CVE-2023-4265 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Revert "Mark CVE-2023-26590 as not-affected"

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 08d4ab66 by Salvatore Bonaccorso at 2023-08-13T12:20:25+02:00 Revert Mark CVE-2023-26590 as not-affected This reverts commit 4009500a2ff716b394a38b09c42a73cbe257228f. The correct entry should

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-34432 as not affected

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: b13f2470 by Bastien Roucariès at 2023-08-13T10:17:54+00:00 Mark CVE-2023-34432 as not affected Fixed by previous debian fixes - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-26590 as not-affected

2023-08-13 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 4009500a by Bastien Roucariès at 2023-08-13T10:03:51+00:00 Mark CVE-2023-26590 as not-affected - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: claim flash in dla-needed.txt

2023-08-13 Thread Sean Whitton (@spwhitton)
Sean Whitton pushed to branch master at Debian Security Tracker / security-tracker Commits: 3c1c034c by Sean Whitton at 2023-08-13T10:47:06+01:00 LTS: claim flash in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 612c76a7 by security tracker role at 2023-08-13T08:12:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-33953/grpc

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9fb623f6 by Salvatore Bonaccorso at 2023-08-13T08:35:24+02:00 Add CVE-2023-33953/grpc - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reference upstream issue reference for CVE-2023-3153/ovn

2023-08-13 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ffe0655 by Salvatore Bonaccorso at 2023-08-13T08:03:39+02:00 Reference upstream issue reference for CVE-2023-3153/ovn - - - - - 1 changed file: - data/CVE/list Changes: