Re: Guidance for CVE triage and listing packages in dla-needed.txt

2024-03-25 Thread Adrian Bunk
On Mon, Mar 18, 2024 at 09:40:45PM +0100, Moritz Muehlenhoff wrote: > Emilio Pozuelo Monfort wrote: > > Small nitpick: a CVE 'ignored' for (old)stable can still be fixed via point > > release. The sec-team could be contacted to update that triaging, but that's > > only ignored for

Re: Expanding the scope (slightly) of dla-needed.txt

2024-03-25 Thread Adrian Bunk
On Thu, Mar 14, 2024 at 04:47:57PM -0400, Roberto C. Sánchez wrote: > Hello everyone, > > I have discussed with Santiago the idea of whether we need to somewhat > expand the scope of dla-needed.txt. > > In essence, we need to continue tracking packages as in-work in some > cases even after a DLA

[SECURITY] [DLA 3775-1] firefox-esr security update

2024-03-25 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-3775-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort March 25, 2024

Accepted firefox-esr 115.9.1esr-1~deb10u1 (source) into oldoldstable

2024-03-25 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Sun, 24 Mar 2024 12:21:35 +0100 Source: firefox-esr Architecture: source Version: 115.9.1esr-1~deb10u1 Distribution: buster-security Urgency: medium Maintainer: Maintainers of Mozilla-related packages Changed-By: Emilio Pozuelo

[SECURITY] [DLA 3774-1] gross security update

2024-03-25 Thread Adrian Bunk
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian LTS Advisory DLA-3774-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Adrian Bunk March 25, 2024

[SECURITY] [DLA 3773-1] freeipa security update

2024-03-25 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-3773-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Chris Lamb March 25, 2024

Accepted gross 1.0.2-4.1~deb10u1 (source) into oldoldstable

2024-03-25 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Mon, 25 Mar 2024 13:49:43 +0200 Source: gross Architecture: source Version: 1.0.2-4.1~deb10u1 Distribution: buster-security Urgency: high Maintainer: Antonio Radici Changed-By: Adrian Bunk Closes: 1067115 Changes: gross

Accepted freeipa 4.7.2-3+deb10u1 (source) into oldoldstable

2024-03-25 Thread Debian FTP Masters
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Mon, 25 Mar 2024 10:57:53 + Source: freeipa Architecture: source Version: 4.7.2-3+deb10u1 Distribution: buster-security Urgency: high Maintainer: Debian FreeIPA Team Changed-By: Chris Lamb Closes: 1065106 Changes: freeipa