[Git][security-tracker-team/security-tracker][master] Move tracking for fixes via experimental for CVE-2022-4492 and CVE-2023-1108

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7dac38ef by Salvatore Bonaccorso at 2023-08-21T04:54:37+02:00 Move tracking for fixes via experimental for CVE-2022-4492 and CVE-2023-1108 - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] Take clamav

2023-08-20 Thread Utkarsh Gupta (@utkarsh)
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 38d15b87 by Utkarsh Gupta at 2023-08-21T05:58:22+05:30 Take clamav - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 2 commits: add clamav

2023-08-20 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 47550f3b by Thorsten Alteholz at 2023-08-21T01:15:58+02:00 add clamav - - - - - 55e8d263 by Thorsten Alteholz at 2023-08-21T01:24:23+02:00 add opendkim - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] 2 commits: add qpdf

2023-08-20 Thread Thorsten Alteholz (@alteholz)
and cinder. -- +qpdf (Thorsten Alteholz) + NOTE: 20230820: Added by Front-Desk (ta) +-- qt4-x11 (Roberto C. Sánchez) NOTE: 20230612: Added by Front-Desk (apo) NOTE: 20230615: VCS: https://salsa.debian.org/qt-kde-team/qt/qt4-x11 View it on GitLab: https://salsa.debian.org/security-tracker-team

[Git][security-tracker-team/security-tracker][master] Change fixed versions of undertow to 2.3.8

2023-08-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: adc1be41 by Markus Koschany at 2023-08-21T00:19:55+02:00 Change fixed versions of undertow to 2.3.8 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add note about glib2.0 in dla-needed.txt

2023-08-20 Thread Santiago R.R. (@santiago)
: = data/dla-needed.txt = @@ -65,6 +65,7 @@ glib2.0 (santiago) NOTE: 20230710: WIP (santiago) NOTE: 20230724: buster should be ready. need if it's possible to run same reporter's fuzz test NOTE: 20230807: idem. + NOTE: 20230820: asked for review/test

[Git][security-tracker-team/security-tracker][master] NFUs

2023-08-20 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 073a021b by Moritz Muehlenhoff at 2023-08-20T23:09:33+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 175a39c1 by security tracker role at 2023-08-20T20:12:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-4135/qemu

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 68d44bb4 by Salvatore Bonaccorso at 2023-08-20T21:27:52+02:00 Add Debian bug reference for CVE-2023-4135/qemu - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-40360/qemu

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 93df0812 by Salvatore Bonaccorso at 2023-08-20T21:21:53+02:00 Add Debian bug reference for CVE-2023-40360/qemu - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-4492,undertow: fixed in experimental

2023-08-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b9cff5ee by Markus Koschany at 2023-08-20T20:53:14+02:00 CVE-2022-4492,undertow: fixed in experimental Also link to pull request - - - - - 43b9b68d by Markus Koschany at 2023-08-20T20:53:16+02:00

[Git][security-tracker-team/security-tracker][master] Track mitigation for xen for CVE-2023-20593

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c51a3af3 by Salvatore Bonaccorso at 2023-08-20T20:48:40+02:00 Track mitigation for xen for CVE-2023-20593 Done this as xen ships in code changes accordingly to XSA-433. While the maintainer

[Git][security-tracker-team/security-tracker][master] Track fixed version for xen for CVE-2023-34320 / XSA-436

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8dcc76fd by Salvatore Bonaccorso at 2023-08-20T20:47:49+02:00 Track fixed version for xen for CVE-2023-34320 / XSA-436 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-40303/inetutils

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dca285eb by Salvatore Bonaccorso at 2023-08-20T20:39:46+02:00 Track fixed version for CVE-2023-40303/inetutils - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3536-1 for flask

2023-08-20 Thread Sean Whitton (@spwhitton)
-48579} [buster] - unrar-nonfree 1:5.6.6-1+deb10u3 = data/dla-needed.txt = @@ -50,11 +50,6 @@ dogecoin firmware-nonfree NOTE: 20230820: Added by Front-Desk (ta) -- -flask (Sean Whitton) - NOTE: 20230811: Added

[Git][security-tracker-team/security-tracker][master] fastdds DSA

2023-08-20 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7b85cece by Moritz Mühlenhoff at 2023-08-20T19:29:46+02:00 fastdds DSA - - - - - 3 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] bullseye/bookworm triage

2023-08-20 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2731639a by Moritz Muehlenhoff at 2023-08-20T17:06:29+02:00 bullseye/bookworm triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2021-28429/ffmpeg as wel in 4.1.y branch

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3a472e51 by Salvatore Bonaccorso at 2023-08-20T15:18:21+02:00 Track fixed version for CVE-2021-28429/ffmpeg as wel in 4.1.y branch - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-40305/indent via unstable

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 88552a75 by Salvatore Bonaccorso at 2023-08-20T15:12:35+02:00 Track fixed version for CVE-2023-40305/indent via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed update for unrar-nonfree via bullseye-pu

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9dcc93a5 by Salvatore Bonaccorso at 2023-08-20T15:10:52+02:00 Track proposed update for unrar-nonfree via bullseye-pu - - - - - 1 changed file: - data/next-oldstable-point-update.txt

[Git][security-tracker-team/security-tracker][master] Track clamav fixes via unstable

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f8956ac7 by Salvatore Bonaccorso at 2023-08-20T15:10:07+02:00 Track clamav fixes via unstable - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: claim php7.3 in dla-needed.txt

2023-08-20 Thread Guilhem Moulin (@guilhem)
(guilhem) NOTE: 20230820: Added by Front-Desk (ta) -- python-glance-store View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c28d98cf448b0ebf4f2db8d7fbd876e981bcc74d -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 974df3c8 by Salvatore Bonaccorso at 2023-08-20T14:18:55+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-08-20 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3a82cbd5 by security tracker role at 2023-08-20T08:12:05+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list