[Git][security-tracker-team/security-tracker][master] Add reference for CVE-2023-7008/systemd

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f069bff1 by Salvatore Bonaccorso at 2023-12-22T08:32:19+01:00 Add reference for CVE-2023-7008/systemd - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-42465/sudo

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2d69caa2 by Salvatore Bonaccorso at 2023-12-22T07:30:53+01:00 Add CVE-2023-42465/sudo - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update status for cpio issue

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 75d75bfc by Salvatore Bonaccorso at 2023-12-22T07:26:32+01:00 Update status for cpio issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] mark CVE-2023-7008 as postponed

2023-12-21 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 37ac1784 by Thorsten Alteholz at 2023-12-22T01:02:02+01:00 mark CVE-2023-7008 as postponed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-47118/clickhouse

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 148bc377 by Salvatore Bonaccorso at 2023-12-21T22:46:31+01:00 Add CVE-2023-47118/clickhouse - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e50f87b8 by Salvatore Bonaccorso at 2023-12-21T22:43:39+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-51655/intellij-idea, itp'ed

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5fc87edf by Salvatore Bonaccorso at 2023-12-21T22:40:39+01:00 Add CVE-2023-51655/intellij-idea, itped - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-3019/qemu

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 779de98b by Salvatore Bonaccorso at 2023-12-21T22:24:46+01:00 Update information for CVE-2023-3019/qemu - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed update for fish via bookworm-pu

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fa92c9a9 by Salvatore Bonaccorso at 2023-12-21T22:06:38+01:00 Track proposed update for fish via bookworm-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Track fixes via experimental for three libsass issues

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
: in function Sass::C ...) + [experimental] - libsass 3.6.5+20231221-1 - libsass (bug #1051895) [bookworm] - libsass (Minor issue) [bullseye] - libsass (Minor issue) [buster] - libsass (Minor issue) NOTE: https://github.com/sass/libsass/issues/3178

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2023-6610

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0a73e903 by Salvatore Bonaccorso at 2023-12-21T21:58:07+01:00 Update information for CVE-2023-6610 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2023-6606/linux

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b633b33 by Salvatore Bonaccorso at 2023-12-21T21:55:19+01:00 Update information on CVE-2023-6606/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-7042/linux

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 15d76fa9 by Salvatore Bonaccorso at 2023-12-21T21:48:30+01:00 Add CVE-2023-7042/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-6546/linux

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 82a55f3a by Salvatore Bonaccorso at 2023-12-21T21:34:21+01:00 Add CVE-2023-6546/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 64dd9b6a by Salvatore Bonaccorso at 2023-12-21T21:24:21+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b53a10f5 by security tracker role at 2023-12-21T20:12:10+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] chromium DSA

2023-12-21 Thread Andres Salomon (@dilinger)
Andres Salomon pushed to branch master at Debian Security Tracker / security-tracker Commits: 95b63dcb by Andres Salomon at 2023-12-21T15:08:13-05:00 chromium DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for rust-unsafe-libyaml issue

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4c3d0ddf by Salvatore Bonaccorso at 2023-12-21T20:54:19+01:00 Add Debian bug reference for rust-unsafe-libyaml issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-43646/node-get-func-name via unstable

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 10e180bc by Salvatore Bonaccorso at 2023-12-21T20:52:51+01:00 Track fixed version for CVE-2023-43646/node-get-func-name via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] chromium fixed in sid

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 60d4ba8b by Moritz Muehlenhoff at 2023-12-21T20:51:04+01:00 chromium fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] LTS: claim osslsigncode in dla-needed.txt

2023-12-21 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: f0ad6d03 by Tobias Frost at 2023-12-21T20:42:27+01:00 LTS: claim osslsigncode in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for bluez update

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a4eed934 by Salvatore Bonaccorso at 2023-12-21T20:33:39+01:00 Reserve DSA number for bluez update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Drop unneeded note on consequences for tinyssh

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c9c146b by Salvatore Bonaccorso at 2023-12-21T20:24:03+01:00 Drop unneeded note on consequences for tinyssh - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] add cross reference

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d9a5242e by Moritz Mühlenhoff at 2023-12-21T20:20:01+01:00 add cross reference - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] gst-plugins-bad1.0, thunderbird DSAs

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e2e33f3 by Moritz Mühlenhoff at 2023-12-21T20:18:23+01:00 gst-plugins-bad1.0, thunderbird DSAs - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-16723/cacti: add patches versions

2023-12-21 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 23bdb162 by Sylvain Beucler at 2023-12-21T18:25:50+01:00 CVE-2019-16723/cacti: add patches versions - - - - - 1a7e573a by Sylvain Beucler at 2023-12-21T18:29:37+01:00 CVE-2023-37543/cacti: buster

[Git][security-tracker-team/security-tracker][master] Add reference for postfix details

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 702da29d by Salvatore Bonaccorso at 2023-12-21T18:15:32+01:00 Add reference for postfix details - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add oss-security reference for cpio issue

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: aca81b00 by Salvatore Bonaccorso at 2023-12-21T18:11:40+01:00 Add oss-security reference for cpio issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for postfix issue

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d72b3577 by Salvatore Bonaccorso at 2023-12-21T18:05:24+01:00 Add Debian bug reference for postfix issue - - - - - 7ec16f1b by Salvatore Bonaccorso at 2023-12-21T18:07:23+01:00 Add todo item

[Git][security-tracker-team/security-tracker][master] Add temporary entry for SMTP smuggling attack issue

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cf3a53e2 by Salvatore Bonaccorso at 2023-12-21T17:52:03+01:00 Add temporary entry for SMTP smuggling attack issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-48795/tinyssh as unimportant and add explaining NOTE

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2f9b1d76 by Salvatore Bonaccorso at 2023-12-21T17:01:57+01:00 Mark CVE-2023-48795/tinyssh as unimportant and add explaining NOTE - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] lts: take firefox-esr and thunderbird

2023-12-21 Thread Emilio Pozuelo Monfort (@pochu)
: = data/dla-needed.txt = @@ -73,6 +73,9 @@ dogecoin dropbear (guilhem) NOTE: 20231219: Added by Front-Desk (ta) -- +firefox-esr (Emilio) + NOTE: 20231221: Added by pochu +-- frr NOTE: 20231119: Added by Front-Desk (apo) -- @@ -229,6 +232,9

[Git][security-tracker-team/security-tracker][master] NFUs

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 66bc6291 by Moritz Muehlenhoff at 2023-12-21T15:43:36+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new rust-unsafe-libyaml issue

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f0dbdb9c by Moritz Muehlenhoff at 2023-12-21T15:25:24+01:00 new rust-unsafe-libyaml issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-6873 only affects src:firefox

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 83a0ef39 by Moritz Muehlenhoff at 2023-12-21T12:35:17+01:00 CVE-2023-6873 only affects src:firefox - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

2023-12-21 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 433acc83 by Moritz Muehlenhoff at 2023-12-21T11:08:54+01:00 bookworm/bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add new chromium issue and add chromium to dsa-needed list

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4c297713 by Salvatore Bonaccorso at 2023-12-21T09:47:02+01:00 Add new chromium issue and add chromium to dsa-needed list - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9385fe66 by Salvatore Bonaccorso at 2023-12-21T09:40:17+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 049ed6fd by Salvatore Bonaccorso at 2023-12-21T09:32:38+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-12-21 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 953815a5 by security tracker role at 2023-12-21T08:12:00+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list