[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3872/qemu

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c653b76d by Salvatore Bonaccorso at 2022-11-08T07:14:15+01:00 Add CVE-2022-3872/qemu - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-3644

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ac4e5caf by Salvatore Bonaccorso at 2022-11-08T07:12:34+01:00 Add CVE-2022-3644 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-28321/pam

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 52eb4723 by Salvatore Bonaccorso at 2022-11-07T22:05:39+01:00 Add CVE-2022-28321/pam - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Process some NFUs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 51427391 by Salvatore Bonaccorso at 2022-11-07T22:03:53+01:00 Process some NFUs - - - - - f694f871 by Salvatore Bonaccorso at 2022-11-07T22:04:41+01:00 Add CVE-2022-31256/sendmail - - - - -

[Git][security-tracker-team/security-tracker][master] Process soem NFUs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 758d6dd5 by Salvatore Bonaccorso at 2022-11-07T21:38:43+01:00 Process soem NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-4479{2,3}/net-snmp

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 84a2c78b by Salvatore Bonaccorso at 2022-11-07T21:32:54+01:00 Add CVE-2022-4479{2,3}/net-snmp - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4c264161 by Salvatore Bonaccorso at 2022-11-07T21:28:53+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2022-3808

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 82952a5e by Salvatore Bonaccorso at 2022-11-07T21:18:49+01:00 Remove notes from CVE-2022-3808 Withdrawn by the assigning CNA as it was not a security issue. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2022-3772

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 487e1a09 by Salvatore Bonaccorso at 2022-11-07T21:17:20+01:00 Remove notes from CVE-2022-3772 CVE got rejected as it is a duplicate of CVE-2020-36534. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d3dfd7f9 by Salvatore Bonaccorso at 2022-11-07T21:13:23+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-3275/puppet-module-puppetlabs-apt

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ed1658d7 by Salvatore Bonaccorso at 2022-11-07T21:12:39+01:00 Add Debian bug reference for CVE-2022-3275/puppet-module-puppetlabs-apt - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3f6df6b0 by security tracker role at 2022-11-07T20:10:25+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add upstream tag information for CVE-2022-3275

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6c4e6c5c by Salvatore Bonaccorso at 2022-11-07T21:02:30+01:00 Add upstream tag information for CVE-2022-3275 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] bullseye triage

2022-11-07 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 72eca0ba by Moritz Muehlenhoff at 2022-11-07T17:40:29+01:00 bullseye triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: php-cas: add note

2022-11-07 Thread Sylvain Beucler (@beuc)
is not backwards compatible. Should be investigated further whether this issue should be solved or ignored.. (ola) + NOTE: 20221107: php-cas only has 2 reverse-deps in buster (fusiondirectory, ocsinventory-reports), + NOTE: 20221107: consider fixing all 3 packages; also check situation in ELTS

[Git][security-tracker-team/security-tracker][master] dla: add puppet-module-puppetlabs-mysql

2022-11-07 Thread Sylvain Beucler (@beuc)
protobuf. -- +puppet-module-puppetlabs-mysql + NOTE: 20221107: Programming language: Puppet, Ruby. +-- python-django (Chris Lamb) NOTE: 20220911: Some issue was fixed in stretch so it should also be fixed for buster. NOTE: 20221018: There are 4 CVEs on the debian/buster branch

[Git][security-tracker-team/security-tracker][master] dla: add libde265

2022-11-07 Thread Sylvain Beucler (@beuc)
= @@ -127,6 +127,11 @@ libcommons-jxpath-java NOTE: 20221027: Programming language: Java. NOTE: 20221027: Maintainer notes: Wait for the outcome of upstream discussion. See CVE-2022-41852 for pull requests. -- +libde265 + NOTE: 20221107: Programming

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3181-1 for sudo

2022-11-07 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: e018d7ab by Chris Lamb at 2022-11-07T12:01:32+00:00 Reserve DLA-3181-1 for sudo - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3180-1 for python-scciclient

2022-11-07 Thread Dominik George (@natureshadow)
Dominik George pushed to branch master at Debian Security Tracker / security-tracker Commits: 5f9b9750 by Dominik George at 2022-11-07T12:33:54+01:00 Reserve DLA-3180-1 for python-scciclient - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3179-1 for pixman

2022-11-07 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 6cf9ce87 by Chris Lamb at 2022-11-07T10:44:27+00:00 Reserve DLA-3179-1 for pixman - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-39369/php-cas via unstable

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e42b70f6 by Salvatore Bonaccorso at 2022-11-07T11:28:14+01:00 Track fixed version for CVE-2022-39369/php-cas via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] delete glibc annotations conflicting with elts tracker

2022-11-07 Thread Helmut Grohne (@helmutg)
Helmut Grohne pushed to branch master at Debian Security Tracker / security-tracker Commits: 954ccfc8 by Helmut Grohne at 2022-11-07T10:35:21+01:00 delete glibc annotations conflicting with elts tracker - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] lts: retake xorg-server

2022-11-07 Thread Emilio Pozuelo Monfort (@pochu)
://salsa.debian.org/lts-team/packages/xorg-server.git + NOTE: 20221107: evaluating severity, will upload today/tomorrow (pochu) -- zabbix NOTE: 20220911: At least CVE-2022-23134 was fixed in stretch so it should be fixed in buster too. View it on GitLab: https://salsa.debian.org/security-tracker-team

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25266674 by Salvatore Bonaccorso at 2022-11-07T09:37:25+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-42905/wolfssl

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 339832f9 by Salvatore Bonaccorso at 2022-11-07T09:36:04+01:00 Add CVE-2022-42905/wolfssl - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Remove notes from rejected CVEs

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 60d595ac by Salvatore Bonaccorso at 2022-11-07T09:18:11+01:00 Remove notes from rejected CVEs Further investigation by its assigning CNA showed that they were not security issues. - - - - -

[Git][security-tracker-team/security-tracker][master] automatic update

2022-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 811cdf0d by security tracker role at 2022-11-07T08:10:13+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list