[Git][security-tracker-team/security-tracker][master] CVE-2020-28367/golang: reference patch and regression fix

2023-04-14 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 59ccb3a7 by Sylvain Beucler at 2023-04-14T23:40:03+02:00 CVE-2020-28367/golang: reference patch and regression fix - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-199{2,3,4}/wireshark

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9229a377 by Salvatore Bonaccorso at 2023-04-14T23:06:19+02:00 Add CVE-2023-199{2,3,4}/wireshark - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2021/teampass

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 28ad218c by Salvatore Bonaccorso at 2023-04-14T23:05:49+02:00 Add CVE-2023-2021/teampass - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d0874a41 by Salvatore Bonaccorso at 2023-04-14T23:05:08+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2034/froxlor

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5377be2b by Salvatore Bonaccorso at 2023-04-14T23:03:46+02:00 Add CVE-2023-2034/froxlor - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 21dfd55a by Salvatore Bonaccorso at 2023-04-14T23:02:15+02:00 Add chromium to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2033/chromium

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38c5b55b by Salvatore Bonaccorso at 2023-04-14T22:57:42+02:00 Add CVE-2023-2033/chromium - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-48468/protobuf-c

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ae11ac07 by Salvatore Bonaccorso at 2023-04-14T22:50:50+02:00 Add CVE-2022-48468/protobuf-c - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-30630/dmidecode

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 624c0c2a by Salvatore Bonaccorso at 2023-04-14T22:37:22+02:00 Add CVE-2023-30630/dmidecode - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 576bc875 by Salvatore Bonaccorso at 2023-04-14T22:36:06+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e2e7213f by Salvatore Bonaccorso at 2023-04-14T22:24:26+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add tempoary item for another set of sgt-puzzles issues

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a2b302f4 by Salvatore Bonaccorso at 2023-04-14T22:19:34+02:00 Add tempoary item for another set of sgt-puzzles issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Remove note for CVE-2023-1876

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b229f6c4 by Salvatore Bonaccorso at 2023-04-14T22:17:28+02:00 Remove note for CVE-2023-1876 Was withdrawn by the assigning CNA as found to not be a security issue. - - - - - 1 changed file:

[Git][security-tracker-team/security-tracker][master] automatic update

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 59994f03 by security tracker role at 2023-04-14T20:10:35+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add upstream tag reference for CVE-2022-27664

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a1e848a7 by Salvatore Bonaccorso at 2023-04-14T21:47:42+02:00 Add upstream tag reference for CVE-2022-27664 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream tag information for CVE-2022-41717

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 08b81e67 by Salvatore Bonaccorso at 2023-04-14T21:07:10+02:00 Add upstream tag information for CVE-2022-41717 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream reference for CVE-2023-29491/ncurses

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 73c1ea7c by Salvatore Bonaccorso at 2023-04-14T20:59:21+02:00 Add upstream reference for CVE-2023-29491/ncurses Adding both is sort of redundant but gives us references to two currently active

[Git][security-tracker-team/security-tracker][master] reserve DSA for rails update

2023-04-14 Thread Aron Xu (@aron)
Aron Xu pushed to branch master at Debian Security Tracker / security-tracker Commits: 4ccc1dbc by Aron Xu at 2023-04-15T00:39:42+08:00 reserve DSA for rails update - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list

[Git][security-tracker-team/security-tracker][master] connman fixed in sid

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 20e01376 by Moritz Muehlenhoff at 2023-04-14T15:21:08+02:00 connman fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new jpeg-xl issue

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d8e1ee5b by Moritz Muehlenhoff at 2023-04-14T15:17:20+02:00 new jpeg-xl issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] sync python2.7 status for bullseye

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 00db5cf7 by Moritz Muehlenhoff at 2023-04-14T15:13:28+02:00 sync python2.7 status for bullseye - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] python2.7: associate past python3.x CVEs to python2.7 + buster triage

2023-04-14 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: fb0c9868 by Sylvain Beucler at 2023-04-14T14:45:32+02:00 python2.7: associate past python3.x CVEs to python2.7 + buster triage See https://lists.debian.org/debian-lts/2023/04/msg00019.html for

[Git][security-tracker-team/security-tracker][master] NFUs

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dd8c0e1a by Moritz Muehlenhoff at 2023-04-14T12:14:52+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-41716/go affects cross compile for Windows binary

2023-04-14 Thread Shengjing Zhu (@zhsj)
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: 8f71d72e by Shengjing Zhu at 2023-04-14T17:46:30+08:00 CVE-2022-41716/go affects cross compile for Windows binary See 29f7d181bd88e363de11541667af407043579f00 as well - - - - - 0886e400 by Shengjing

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-29132/irssi via unstable

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4368a220 by Salvatore Bonaccorso at 2023-04-14T11:45:32+02:00 Track fixed version for CVE-2023-29132/irssi via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new gitlab issue

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bd5c75d8 by Moritz Muehlenhoff at 2023-04-14T10:20:48+02:00 new gitlab issue tightvnc n/a - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new ckeditor issue

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 36b23ee2 by Moritz Muehlenhoff at 2023-04-14T10:16:35+02:00 new ckeditor issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new rust-h2 issue

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4c25b593 by Moritz Muehlenhoff at 2023-04-14T10:13:08+02:00 new rust-h2 issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8d19b3cf by Moritz Muehlenhoff at 2023-04-14T10:07:17+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new binutils issue, concludes external check

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2c27ef9d by Moritz Muehlenhoff at 2023-04-14T09:49:34+02:00 new binutils issue, concludes external check - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] "new" sqlite3 issue

2023-04-14 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5af0245d by Moritz Muehlenhoff at 2023-04-14T09:47:05+02:00 new sqlite3 issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Fix syntax

2023-04-14 Thread Shengjing Zhu (@zhsj)
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: b1f2e10e by Shengjing Zhu at 2023-04-14T15:34:00+08:00 Fix syntax - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-41717 affects golang-golang-x-net as well

2023-04-14 Thread Shengjing Zhu (@zhsj)
Shengjing Zhu pushed to branch master at Debian Security Tracker / security-tracker Commits: 27e1419b by Shengjing Zhu at 2023-04-14T15:31:49+08:00 CVE-2022-41717 affects golang-golang-x-net as well - - - - - 7a17025f by Shengjing Zhu at 2023-04-14T15:31:50+08:00 CVE-2022-41720/go affects

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-28488

2023-04-14 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d04a648f by Salvatore Bonaccorso at 2023-04-14T09:28:59+02:00 Add Debian bug reference for CVE-2023-28488 - - - - - 1 changed file: - data/CVE/list Changes: