[Git][security-tracker-team/security-tracker][master] ansible-core fixed in sid

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2007fd23 by Moritz Muehlenhoff at 2024-04-18T12:21:00+02:00 ansible-core fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 650b9c8f by Salvatore Bonaccorso at 2024-04-18T12:31:18+02:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] additional unclear xpdf issue

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 92b648f5 by Moritz Muehlenhoff at 2024-04-18T13:10:39+02:00 additional unclear xpdf issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new ffmpeg issues

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0cc056ba by Moritz Muehlenhoff at 2024-04-18T13:51:59+02:00 new ffmpeg issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: da7f04e4 by Moritz Muehlenhoff at 2024-04-18T12:51:06+02:00 bookworm/bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add one CVE assigned by Linux kernel CNA

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2f577ef1 by Salvatore Bonaccorso at 2024-04-18T14:11:48+02:00 Add one CVE assigned by Linux kernel CNA - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] fastdds fixed in sid

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ac3e867 by Moritz Muehlenhoff at 2024-04-18T12:19:37+02:00 fastdds fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add initial tracking for new ofono issues

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8fc31fd6 by Salvatore Bonaccorso at 2024-04-18T12:30:08+02:00 Add initial tracking for new ofono issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3788-1 for tzdata

2024-04-18 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: f0451d4c by Emilio Pozuelo Monfort at 2024-04-18T12:25:06+02:00 Reserve DLA-3788-1 for tzdata - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] ansible fixed in sid

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 87c93034 by Moritz Muehlenhoff at 2024-04-18T11:05:12+02:00 ansible fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3789-1 for libdatetime-timezone-perl

2024-04-18 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 86677589 by Emilio Pozuelo Monfort at 2024-04-18T12:28:48+02:00 Reserve DLA-3789-1 for libdatetime-timezone-perl - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a876ec28 by Moritz Muehlenhoff at 2024-04-18T11:33:26+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] lts: take openjdk-11

2024-04-18 Thread Emilio Pozuelo Monfort (@pochu)
/dla-needed.txt = @@ -204,6 +204,9 @@ nvidia-graphics-drivers-legacy-390xx NOTE: 20240303: Added by Front-Desk (apo) NOTE: 20240303: See comment for nvidia-graphics-drivers. (apo/front-desk) -- +openjdk-11 (Emilio) + NOTE: 20240418: Added by pochu +-- org

[Git][security-tracker-team/security-tracker][master] new tryton issue

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 639a8e6b by Moritz Muehlenhoff at 2024-04-18T20:57:09+02:00 new tryton issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Patch prepared for bind9 and unclaim to allow someone else to complete it.

2024-04-18 Thread Ola Lundqvist (@opal)
: https://inguza.com/reportdoc/debian-lts/0041-CVE-2023-50387-CVE-2023-50868.patch - NOTE: 20240417: task.c needs to be reworked more for it to build. + NOTE: 20240418: Patch created for CVE-2023-50387 and CVE-2023-50868 and package builds fine. + NOTE: 20240418: https://salsa.debian.org/lts

[Git][security-tracker-team/security-tracker][master] new flatpak issue

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 32a8a8bd by Moritz Muehlenhoff at 2024-04-18T20:54:45+02:00 new flatpak issue - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Remove notes from two Linux kernel CVEs which are rejected

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cc6edbbd by Salvatore Bonaccorso at 2024-04-18T17:18:40+02:00 Remove notes from two Linux kernel CVEs which are rejected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new pytorch issues

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: af55eea0 by Moritz Muehlenhoff at 2024-04-18T16:44:35+02:00 new pytorch issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] libapache2-mod-auth-openidc fixed in sid

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: c3b9f671 by Moritz Muehlenhoff at 2024-04-18T16:45:21+02:00 libapache2-mod-auth-openidc fixed in sid - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2024-2511,openssl: buster is postponed

2024-04-18 Thread Markus Koschany (@apo)
has been fixed in bullseye. (ola) -- +less + NOTE: 20240418: Added by Front-Desk (apo) +-- libpgjava (Markus Koschany) NOTE: 20240308: Added by Front-Desk (opal) -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare

[Git][security-tracker-team/security-tracker][master] Move oss-security reference for flatpak and drop entry

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 26a59189 by Salvatore Bonaccorso at 2024-04-18T23:11:15+02:00 Move oss-security reference for flatpak and drop entry - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add explicit additional reference for CVE-2024-2961 for php impact

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b84a23e7 by Salvatore Bonaccorso at 2024-04-18T23:46:57+02:00 Add explicit additional reference for CVE-2024-2961 for php impact - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-32462/flatpak

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 50039466 by Salvatore Bonaccorso at 2024-04-18T22:17:07+02:00 Add CVE-2024-32462/flatpak - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add note for glibc in dsa-needed list

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 354256ef by Salvatore Bonaccorso at 2024-04-18T22:18:13+02:00 Add note for glibc in dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add fixed version for flatpak via unstable

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c3948369 by Salvatore Bonaccorso at 2024-04-18T22:19:52+02:00 Add fixed version for flatpak via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-31031/libcoap

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fe9060aa by Salvatore Bonaccorso at 2024-04-18T22:51:01+02:00 Add CVE-2024-31031/libcoap - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e9c20f4 by security tracker role at 2024-04-18T20:11:51+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove notes from some rejected CVES withrawn by the CNA

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cd2ec86c by Salvatore Bonaccorso at 2024-04-18T22:31:37+02:00 Remove notes from some rejected CVES withrawn by the CNA - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d8b48c3 by Salvatore Bonaccorso at 2024-04-18T22:47:45+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-32475/envoyproxy

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e60c4fd6 by Salvatore Bonaccorso at 2024-04-18T22:46:54+02:00 Add CVE-2024-32475/envoyproxy - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track proposed update for libapache2-mod-auth-openidc via {bullseye,bookworm}-pu

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9238c678 by Salvatore Bonaccorso at 2024-04-18T23:54:43+02:00 Track proposed update for libapache2-mod-auth-openidc via {bullseye,bookworm}-pu - - - - - 3 changed files: - data/CVE/list -

[Git][security-tracker-team/security-tracker][master] Add upstream commit references for flatpak issue

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 87fb2686 by Salvatore Bonaccorso at 2024-04-18T22:24:38+02:00 Add upstream commit references for flatpak issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference upstream commit tag for CVE-2024-0690

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5ddd5288 by Salvatore Bonaccorso at 2024-04-18T23:10:19+02:00 Reference upstream commit tag for CVE-2024-0690 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream tag information for some ffmpeg references

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 32ae551d by Salvatore Bonaccorso at 2024-04-18T23:45:11+02:00 Add upstream tag information for some ffmpeg references - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new k8s issue

2024-04-18 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 54d66d6f by Moritz Muehlenhoff at 2024-04-18T10:22:30+02:00 new k8s issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fd6e59a by security tracker role at 2024-04-18T08:11:47+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-18 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: de741f76 by Salvatore Bonaccorso at 2024-04-18T08:30:39+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list