[Git][security-tracker-team/security-tracker][master] Track CVE fixes for imagemagick after upload to unstable

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: df0dbc18 by Salvatore Bonaccorso at 2023-10-26T07:37:22+02:00 Track CVE fixes for imagemagick after upload to unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track upstream tag for one imagemagick commit

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b822ffd4 by Salvatore Bonaccorso at 2023-10-26T07:36:47+02:00 Track upstream tag for one imagemagick commit - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for thunderbird via unstable upload

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f70f5be by Salvatore Bonaccorso at 2023-10-26T07:08:01+02:00 Track fixed version for thunderbird via unstable upload - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Associate CVE-2019-19588 with src:validators

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 801afbbf by Salvatore Bonaccorso at 2023-10-26T06:41:04+02:00 Associate CVE-2019-19588 with src:validators - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] co-claim with rouca docker.io in dla-needed.txt, again

2023-10-25 Thread Santiago R.R. (@santiago)
Santiago R.R. pushed to branch master at Debian Security Tracker / security-tracker Commits: df33b894 by Santiago Ruano Rincón at 2023-10-25T23:11:56-03:00 co-claim with rouca docker.io in dla-needed.txt, again - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d6fde674 by Salvatore Bonaccorso at 2023-10-25T22:42:19+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 21b23d7e by Salvatore Bonaccorso at 2023-10-25T22:29:56+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5717/linux

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 744d6bd6 by Salvatore Bonaccorso at 2023-10-25T22:25:09+02:00 Add CVE-2023-5717/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e1f32d65 by security tracker role at 2023-10-25T20:12:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update references for CVE-2023-38469/avahi

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 71c91a64 by Salvatore Bonaccorso at 2023-10-25T21:45:41+02:00 Update references for CVE-2023-38469/avahi - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2023-10-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d9044200 by Moritz Muehlenhoff at 2023-10-25T21:35:06+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-46136/python-werkzeug

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b5d12910 by Salvatore Bonaccorso at 2023-10-25T21:15:55+02:00 Add Debian bug reference for CVE-2023-46136/python-werkzeug - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] firefox-esr DSA

2023-10-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: becd9a2b by Moritz Mühlenhoff at 2023-10-25T21:04:30+02:00 firefox-esr DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5472/chromium fixes via unstable

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38550836 by Salvatore Bonaccorso at 2023-10-25T20:55:42+02:00 Add CVE-2023-5472/chromium fixes via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Associate chromium for DSA

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ce786ab by Salvatore Bonaccorso at 2023-10-25T20:52:01+02:00 Associate chromium for DSA - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for firefox issues via unstable

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c7a76c33 by Salvatore Bonaccorso at 2023-10-25T20:50:14+02:00 Track fixed version for firefox issues via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-5363/openssl via unstable

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fe1aa73c by Salvatore Bonaccorso at 2023-10-25T20:47:40+02:00 Track fixed version for CVE-2023-5363/openssl via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5752/python-pip

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b0450ae0 by Salvatore Bonaccorso at 2023-10-25T20:28:34+02:00 Add CVE-2023-5752/python-pip - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2023-10-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0dbb84f8 by Moritz Muehlenhoff at 2023-10-25T20:05:19+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3631-1 for xorg-server

2023-10-25 Thread Thorsten Alteholz (@alteholz)
Alteholz) - NOTE: 20231025: Added embargoed issue (ta) --- zabbix NOTE: 20231015: Added by Front-Desk (ta) -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb61f367f5d8779d90b9d9327c233c472a3c7d9d -- View it on GitLab: https

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for xorg-server update

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0bb0040d by Salvatore Bonaccorso at 2023-10-25T16:34:33+02:00 Reserve DSA number for xorg-server update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add note on request-tracker4 in dla-needed.txt

2023-10-25 Thread Santiago R.R. (@santiago)
: Please check the commit: https://github.com/bestpractical/rt/commit/afb7dcded721e27028e47b62e7e5ed8ffc492beb + NOTE: 20231025: Andrew Ruthven is working on the buster-security upload, but will let the LTS handle the paperwork -- ring NOTE: 20230903: Added by Front-Desk (gladk) View

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 12a8a5cf by Salvatore Bonaccorso at 2023-10-25T16:25:37+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-46136/python-werkzeug

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7170b4b4 by Salvatore Bonaccorso at 2023-10-25T16:24:17+02:00 Add CVE-2023-46136/python-werkzeug - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5758/firefox

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b8bc076d by Salvatore Bonaccorso at 2023-10-25T16:23:31+02:00 Add CVE-2023-5758/firefox - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add thunderbird for dsa-needed list

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cf7d51a0 by Salvatore Bonaccorso at 2023-10-25T16:15:28+02:00 Add thunderbird for dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] lts: take firefox-esr and thunderbird

2023-10-25 Thread Emilio Pozuelo Monfort (@pochu)
-esr +firefox-esr (Emilio) NOTE: 20231024: Added by Front-Desk (gladk) -- flatpak @@ -232,6 +232,9 @@ suricata (Adrian Bunk) NOTE: 20230731: Still reviewing+testing CVEs. (bunk) NOTE: 20231016: Still reviewing+testing CVEs. (bunk) -- +thunderbird (Emilio) + NOTE: 20231025: Added by pochu

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6f63f2eb by Salvatore Bonaccorso at 2023-10-25T14:00:04+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for 4 squid issues

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f2114113 by Salvatore Bonaccorso at 2023-10-25T13:31:23+02:00 Add Debian bug reference for 4 squid issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim pmix.

2023-10-25 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c7b1dbf by Chris Lamb at 2023-10-25T10:35:10+01:00 data/dla-needed.txt: Claim pmix. - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Track CVE for thunderbird from mfsa2023-47

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: acfde242 by Salvatore Bonaccorso at 2023-10-25T11:19:20+02:00 Track CVE for thunderbird from mfsa2023-47 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for CVE-2023-5367/xwayland

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5113e2ea by Salvatore Bonaccorso at 2023-10-25T11:16:12+02:00 Track fixed version via unstable for CVE-2023-5367/xwayland - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixes for xorg-server

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d3788446 by Salvatore Bonaccorso at 2023-10-25T11:14:44+02:00 Track fixes for xorg-server - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] add xorg-server

2023-10-25 Thread Thorsten Alteholz (@alteholz)
= @@ -235,6 +235,9 @@ suricata (Adrian Bunk) trafficserver (Adrian Bunk) NOTE: 20231011: Added by Front-Desk (ta) -- +xorg-server (Thorsten Alteholz) + NOTE: 20231025: Added embargoed issue (ta) +-- zabbix NOTE: 20231015: Added by Front-Desk (ta

[Git][security-tracker-team/security-tracker][master] automatic update

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c7b5268 by security tracker role at 2023-10-25T08:12:36+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add xorg-server to dsa-needed list

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2c51ba1d by Salvatore Bonaccorso at 2023-10-25T10:02:41+02:00 Add xorg-server to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-5367/xwayland as no-dsa

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eb5cc42a by Salvatore Bonaccorso at 2023-10-25T09:59:53+02:00 Mark CVE-2023-5367/xwayland as no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add xorg-server CVEs

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 17912e4e by Salvatore Bonaccorso at 2023-10-25T09:57:12+02:00 Add xorg-server CVEs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 05a45ddd by Salvatore Bonaccorso at 2023-10-25T09:24:08+02:00 Add chromium to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-5472/chromium

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0df8a4eb by Salvatore Bonaccorso at 2023-10-25T08:43:06+02:00 Add CVE-2023-5472/chromium - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-38471/avahi

2023-10-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a4c9809d by Salvatore Bonaccorso at 2023-10-25T08:39:01+02:00 Update information for CVE-2023-38471/avahi - - - - - 1 changed file: - data/CVE/list Changes: