[Git][security-tracker-team/security-tracker][master] Add CVE-2023-7192/linux

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ece8d413 by Salvatore Bonaccorso at 2023-12-31T07:22:14+01:00 Add CVE-2023-7192/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reference applied patch for CVE-2023-34194 at least temporarily

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 16a47b09 by Salvatore Bonaccorso at 2023-12-31T07:16:28+01:00 Reference applied patch for CVE-2023-34194 at least temporarily - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-40462 as NFU

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e507c93 by Salvatore Bonaccorso at 2023-12-31T06:54:25+01:00 Mark CVE-2023-40462 as NFU The vulnerability report states that one issue has two CVE IDs because it affects TinyXML independently

[Git][security-tracker-team/security-tracker][master] LTS: claim php-guzzlehttp-psr7 in dla-needed.txt

2023-12-30 Thread Guilhem Moulin (@guilhem)
: = data/dla-needed.txt = @@ -169,7 +169,7 @@ nvidia-cuda-toolkit paramiko NOTE: 20231225: Added by Front-Desk (ta) -- -php-guzzlehttp-psr7 +php-guzzlehttp-psr7 (guilhem) NOTE: 20231230: Added by Front-Desk (lamby) NOTE: 20231230: CVE-2023-29197

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3702-1 for libspreadsheet-parseexcel-perl

2023-12-30 Thread Guilhem Moulin (@guilhem)
the version NOTE: 20230909: from Bullseye instead as soon as the maintainer uploads the fix. (apo) -- -libspreadsheet-parseexcel-perl (guilhem) - NOTE: 20231230: Added by Front-Desk (lamby) --- libssh (Sean Whitton) NOTE: 20231219: Added by Front-Desk (ta) -- View it on GitLab: https

[Git][security-tracker-team/security-tracker][master] LTS: claim libspreadsheet-parseexcel-perl in dla-needed.txt

2023-12-30 Thread Guilhem Moulin (@guilhem)
-parseexcel-perl +libspreadsheet-parseexcel-perl (guilhem) NOTE: 20231230: Added by Front-Desk (lamby) -- libssh (Sean Whitton) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c9458da1ac7dd69fba91d43ab8ac90e6cacfc635 -- View it on GitLab: https

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3701-1 for tinyxml

2023-12-30 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 4fe8f15d by Guilhem Moulin at 2023-12-31T00:08:39+01:00 Reserve DLA-3701-1 for tinyxml - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some more NFUs

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4788fbdb by Salvatore Bonaccorso at 2023-12-30T21:27:25+01:00 Process some more NFUs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-52263/brave-browser, itp'ed

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 893d7f85 by Salvatore Bonaccorso at 2023-12-30T21:26:41+01:00 Add CVE-2023-52263/brave-browser, itped - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-50572

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 04f0d04a by Salvatore Bonaccorso at 2023-12-30T21:17:46+01:00 Add Debian bug reference for CVE-2023-50572 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 39be84e8 by Salvatore Bonaccorso at 2023-12-30T21:17:02+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1e12d1f1 by security tracker role at 2023-12-30T20:11:42+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] libsass fixed in sid

2023-12-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ba45f82 by Moritz Muehlenhoff at 2023-12-30T20:55:56+01:00 libsass fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3700-1 for cjson

2023-12-30 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 631403dd by Thorsten Alteholz at 2023-12-30T19:33:42+01:00 Reserve DLA-3700-1 for cjson - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3699-1 for libde265

2023-12-30 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 0af6b042 by Thorsten Alteholz at 2023-12-30T19:27:58+01:00 Reserve DLA-3699-1 for libde265 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add exim4 for pending clarification

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 61d11a9a by Salvatore Bonaccorso at 2023-12-30T18:44:03+01:00 Add exim4 for pending clarification - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for libspreadsheet-parseexcel-perl update

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a2da2be4 by Salvatore Bonaccorso at 2023-12-30T17:07:14+01:00 Reserve DSA number for libspreadsheet-parseexcel-perl update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt

[Git][security-tracker-team/security-tracker][master] mark CVE-2023-50472 as not-affected for Buster

2023-12-30 Thread Thorsten Alteholz (@alteholz)
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: c295bb8b by Thorsten Alteholz at 2023-12-30T16:56:49+01:00 mark CVE-2023-50472 as not-affected for Buster - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference fixing commit for CVE-2023-7101

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c182caa4 by Salvatore Bonaccorso at 2023-12-30T15:00:06+01:00 Reference fixing commit for CVE-2023-7101 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process CVE-2023-51663 as NFU

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7723b494 by Salvatore Bonaccorso at 2023-12-30T14:09:59+01:00 Process CVE-2023-51663 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage edk2 for buster LTS (CVE-2019-11098)

2023-12-30 Thread Chris Lamb (@lamby)
-Desk (ta) -- +edk2 + NOTE: 20231230: Added by Front-Desk (lamby) + NOTE: 20231230: CVE-2019-11098 fixed in bullseye via DSA or point release (lamby) +-- exim4 (Markus Koschany) NOTE: 20231224: Added by Front-Desk (ta) -- @@ -174,6 +178,10 @@ nvidia-cuda-toolkit paramiko NOTE: 20231225

[Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage libspreadsheet-parseexcel-perl for buster LTS (CVE-2023-7101)

2023-12-30 Thread Chris Lamb (@lamby)
as the maintainer uploads the fix. (apo) -- +libspreadsheet-parseexcel-perl + NOTE: 20231230: Added by Front-Desk (lamby) +-- libssh (Sean Whitton) NOTE: 20231219: Added by Front-Desk (ta) -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare

[Git][security-tracker-team/security-tracker][master] Process one NFU

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 179129dc by Salvatore Bonaccorso at 2023-12-30T12:35:05+01:00 Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track proposed update for mariadb-10.5 via bullseye-pu

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: af75c2ef by Salvatore Bonaccorso at 2023-12-30T12:16:22+01:00 Track proposed update for mariadb-10.5 via bullseye-pu - - - - - 1 changed file: - data/next-oldstable-point-update.txt

[Git][security-tracker-team/security-tracker][master] Reference blog post for spip issue

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f2bd2dcd by Salvatore Bonaccorso at 2023-12-30T11:58:42+01:00 Reference blog post for spip issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for spip issue

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 099151f2 by Salvatore Bonaccorso at 2023-12-30T11:57:29+01:00 Reference upstream commit for spip issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed updates for filezilla via {bullseye,bookworm}-pu

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e5891585 by Salvatore Bonaccorso at 2023-12-30T11:55:16+01:00 Track proposed updates for filezilla via {bullseye,bookworm}-pu - - - - - 2 changed files: -

[Git][security-tracker-team/security-tracker][master] Add phpseclib tracking for CVE-2023-48795

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dd37d4c by Salvatore Bonaccorso at 2023-12-30T11:17:04+01:00 Add phpseclib tracking for CVE-2023-48795 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 64447640 by Salvatore Bonaccorso at 2023-12-30T09:45:05+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-12-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0384af13 by security tracker role at 2023-12-30T08:11:33+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list