[Git][security-tracker-team/security-tracker][master] Add roundcube to dsa-needed list

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6160043e by Salvatore Bonaccorso at 2023-11-29T08:53:24+01:00 Add roundcube to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-6111/linux via unstable

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d423ac62 by Salvatore Bonaccorso at 2023-11-29T08:52:08+01:00 Track fixed version for CVE-2023-6111/linux via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs (concludes external check)

2023-11-28 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 50d2abe2 by Moritz Muehlenhoff at 2023-11-29T08:49:35+01:00 NFUs (concludes external check) - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for gst-plugins-bad1.0 via unstable

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b07e45fe by Salvatore Bonaccorso at 2023-11-29T07:22:33+01:00 Track fixed version for gst-plugins-bad1.0 via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3673-1 for gst-plugins-bad1.0

2023-11-28 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: c8dae185 by Thorsten Alteholz at 2023-11-28T23:46:00+01:00 Reserve DLA-3673-1 for gst-plugins-bad1.0 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-14628/samba

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0050497a by Salvatore Bonaccorso at 2023-11-28T23:03:35+01:00 Add reference for CVE-2018-14628/samba - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Revert "Mark CVE-2020-21428 as not-affected for stretch"

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8a9df901 by Salvatore Bonaccorso at 2023-11-28T22:49:29+01:00 Revert Mark CVE-2020-21428 as not-affected for stretch This reverts commit 6619bfa58413f9d3459f33f21a696aa0da67fb3b. Suspect -

[Git][security-tracker-team/security-tracker][master] Add myself for zbar

2023-11-28 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 03fa999f by Bastien Roucariès at 2023-11-28T21:30:02+00:00 Add myself for zbar - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-45539/haproxy

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b51133a7 by Salvatore Bonaccorso at 2023-11-28T21:37:42+01:00 Add CVE-2023-45539/haproxy - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 791852ef by Salvatore Bonaccorso at 2023-11-28T21:26:59+01:00 Add chromium to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add new chromium issues

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 571001e5 by Salvatore Bonaccorso at 2023-11-28T21:26:08+01:00 Add new chromium issues Link: https://chromereleases.googleblog.com/2023/11/stable-channel-update-for-desktop_28.html - - - - -

[Git][security-tracker-team/security-tracker][master] Process new NFUs

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7666a459 by Salvatore Bonaccorso at 2023-11-28T21:21:24+01:00 Process new NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7f6af1c1 by security tracker role at 2023-11-28T20:13:45+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Document status for ldap-account-manager and phpseclib variants

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2dc47976 by Salvatore Bonaccorso at 2023-11-28T20:51:54+01:00 Document status for ldap-account-manager and phpseclib variants - - - - - 1 changed file: - data/embedded-code-copies

[Git][security-tracker-team/security-tracker][master] Mark gtkpod as removed from unstable

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d1ee7834 by Salvatore Bonaccorso at 2023-11-28T20:43:56+01:00 Mark gtkpod as removed from unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3672-1 for postgresql-multicorn

2023-11-28 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 63978e84 by Bastien Roucariès at 2023-11-28T16:41:53+00:00 Reserve DLA-3672-1 for postgresql-multicorn - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-46589: Add references to upstream commits

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c643ad2b by Salvatore Bonaccorso at 2023-11-28T17:30:29+01:00 CVE-2023-46589: Add references to upstream commits - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-46589/tomcat

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e9fd05e8 by Salvatore Bonaccorso at 2023-11-28T17:21:04+01:00 Add CVE-2023-46589/tomcat - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] php-phpseclib3 spu

2023-11-28 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f75b9e8 by Moritz Muehlenhoff at 2023-11-28T17:00:55+01:00 php-phpseclib3 spu - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] bullseye/bookworm triage

2023-11-28 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9afdec9f by Moritz Muehlenhoff at 2023-11-28T16:59:29+01:00 bullseye/bookworm triage - - - - - 2 changed files: - data/CVE/list - data/next-oldstable-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] dla: add bouncycastle note

2023-11-28 Thread Sylvain Beucler (@beuc)
: 20231128: I can't find changes in PEMParser.java related to CVE-2023-33202, maybe contact upstream (Beuc/front-desk) -- cacti (Sylvain Beucler) NOTE: 20230906: Added by Front-Desk (lamby) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3671-1 for mediawiki

2023-11-28 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 3ead906b by Guilhem Moulin at 2023-11-28T12:20:18+01:00 Reserve DLA-3671-1 for mediawiki - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some additional NFUs

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e6a11634 by Salvatore Bonaccorso at 2023-11-28T09:33:35+01:00 Process some additional NFUs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add new busybox issues (need further triage)

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 27a8d663 by Salvatore Bonaccorso at 2023-11-28T09:32:36+01:00 Add new busybox issues (need further triage) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 28b0c12d by Salvatore Bonaccorso at 2023-11-28T09:27:07+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-28 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 94a863e9 by security tracker role at 2023-11-28T08:21:09+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] php-phpseclib3 fixed in sid

2023-11-28 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 545ef814 by Moritz Muehlenhoff at 2023-11-28T09:11:29+01:00 php-phpseclib3 fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: =