[Git][security-tracker-team/security-tracker][master] DLA-3395-1/golang-1.11: drop fix for CVE-2022-23772

2023-04-19 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a84b20b by Sylvain Beucler at 2023-04-19T23:43:24+02:00 DLA-3395-1/golang-1.11: drop fix for CVE-2022-23772 - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-27043/python

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 44494ed4 by Salvatore Bonaccorso at 2023-04-19T22:35:05+02:00 Add CVE-2023-27043/python - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 755399ce by Salvatore Bonaccorso at 2023-04-19T22:26:39+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a54e0c4b by Salvatore Bonaccorso at 2023-04-19T22:20:18+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add upstream issue reference for CVE-2023-29469/libxml2

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e64bf4b0 by Salvatore Bonaccorso at 2023-04-19T22:18:07+02:00 Add upstream issue reference for CVE-2023-29469/libxml2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6c3ce7ff by security tracker role at 2023-04-19T20:10:34+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 3 commits: Add Debian bug reference for CVE-2023-30608/sqlparse

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 957879af by Salvatore Bonaccorso at 2023-04-19T21:46:46+02:00 Add Debian bug reference for CVE-2023-30608/sqlparse - - - - - 073d744a by Salvatore Bonaccorso at 2023-04-19T21:46:47+02:00 Add

[Git][security-tracker-team/security-tracker][master] Marked tiff CVE-2023-30774 as no-dsa also for buster following decision for bullseye.

2023-04-19 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: aee3f9c6 by Ola Lundqvist at 2023-04-19T21:40:39+02:00 Marked tiff CVE-2023-30774 as no-dsa also for buster following decision for bullseye. - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] LTS: add openjdk-11 to dla-needed.txt

2023-04-19 Thread Ola Lundqvist (@opal)
/dla-needed.txt = @@ -203,6 +203,10 @@ openimageio (Markus Koschany) NOTE: 20230406: Programming language: C. NOTE: 20230406: VCS: https://salsa.debian.org/lts-team/packages/openimageio.git -- +openjdk-11 + NOTE: 20230419: Programming language: Java

[Git][security-tracker-team/security-tracker][master] CVE-2023-29491: Add reference to oss-security post

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38a2be03 by Salvatore Bonaccorso at 2023-04-19T20:57:17+02:00 CVE-2023-29491: Add reference to oss-security post - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2020-16155

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c7917e49 by Salvatore Bonaccorso at 2023-04-19T20:45:33+02:00 Update information for CVE-2020-16155 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3395-1 for golang-1.11

2023-04-19 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: df4f6128 by Sylvain Beucler at 2023-04-19T17:47:48+02:00 Reserve DLA-3395-1 for golang-1.11 - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 689ceebd by Moritz Muehlenhoff at 2023-04-19T17:24:05+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new mysql issues

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f2af766f by Moritz Muehlenhoff at 2023-04-19T16:55:39+02:00 new mysql issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new virtualbox issues

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 017c8e3f by Moritz Muehlenhoff at 2023-04-19T16:47:25+02:00 new virtualbox issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new Java issues

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d6c8d99 by Moritz Muehlenhoff at 2023-04-19T16:43:51+02:00 new Java issues - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f823e512 by Moritz Muehlenhoff at 2023-04-19T16:35:16+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track introducing commit for CVE-2023-30608

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 49f7b18a by Salvatore Bonaccorso at 2023-04-19T15:48:03+02:00 Track introducing commit for CVE-2023-30608 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-045{8,9}/linux

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d1fb2746 by Salvatore Bonaccorso at 2023-04-19T15:37:05+02:00 Update status for CVE-2023-045{8,9}/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new sqlparse issue

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 39dc5885 by Moritz Muehlenhoff at 2023-04-19T15:12:30+02:00 new sqlparse issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new dogecoin issue

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e66909c3 by Moritz Muehlenhoff at 2023-04-19T15:10:09+02:00 new dogecoin issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-1981/avahi via unstable

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 88d91f4b by Salvatore Bonaccorso at 2023-04-19T14:24:15+02:00 Track fixed version for CVE-2023-1981/avahi via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 263122bd by Salvatore Bonaccorso at 2023-04-19T14:08:31+02:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] golang-1.11: postpone open CVEs unfixed in bullseye

2023-04-19 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: cf04c43b by Sylvain Beucler at 2023-04-19T13:48:49+02:00 golang-1.11: postpone open CVEs unfixed in bullseye - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2124/linux

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a2449628 by Salvatore Bonaccorso at 2023-04-19T13:44:45+02:00 Add CVE-2023-2124/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-27525

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 33821ccf by Salvatore Bonaccorso at 2023-04-19T13:40:03+02:00 Add CVE-2023-27525 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2022-23773/golang-1.11: buster ignored

2023-04-19 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a61374d by Sylvain Beucler at 2023-04-19T13:32:10+02:00 CVE-2022-23773/golang-1.11: buster ignored - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3991c3f5 by Moritz Muehlenhoff at 2023-04-19T12:13:28+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] php-slim-psr7 fixed in sid

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 235d00c3 by Moritz Muehlenhoff at 2023-04-19T12:01:00+02:00 php-slim-psr7 fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2020/check-mk

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6e486752 by Salvatore Bonaccorso at 2023-04-19T11:46:17+02:00 Add CVE-2023-2020/check-mk - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a4f2b81b by Salvatore Bonaccorso at 2023-04-19T11:44:11+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: aacf588f by security tracker role at 2023-04-19T08:10:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8dc0f533 by Salvatore Bonaccorso at 2023-04-19T09:44:37+02:00 Add chromium to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add new chromium issues

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 769ad1be by Salvatore Bonaccorso at 2023-04-19T09:44:01+02:00 Add new chromium issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2166/linux

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ce6b9691 by Salvatore Bonaccorso at 2023-04-19T09:30:16+02:00 Add CVE-2023-2166/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2162/linux

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5f18ee8a by Salvatore Bonaccorso at 2023-04-19T09:23:28+02:00 Add CVE-2023-2162/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] dla-needed.txt: Drop claim of libxml2 to harmonise claims across LTS and ELTS.

2023-04-19 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 46027c28 by Chris Lamb at 2023-04-19T08:17:09+01:00 dla-needed.txt: Drop claim of libxml2 to harmonise claims across LTS and ELTS. - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] bullseye triage

2023-04-19 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: a131af39 by Moritz Muehlenhoff at 2023-04-19T09:08:52+02:00 bullseye triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim avahi.

2023-04-19 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 40ba312f by Chris Lamb at 2023-04-19T07:47:32+01:00 data/dla-needed.txt: Claim avahi. - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add references for CVE-2023-29197

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b551ec79 by Salvatore Bonaccorso at 2023-04-19T08:45:56+02:00 Add references for CVE-2023-29197 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim connman.

2023-04-19 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: b3716c2d by Chris Lamb at 2023-04-19T07:43:26+01:00 data/dla-needed.txt: Claim connman. - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add php-nyholm-psr7 for CVE-2023-29197

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 21e83138 by Salvatore Bonaccorso at 2023-04-19T08:36:35+02:00 Add php-nyholm-psr7 for CVE-2023-29197 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixes for thunderbird via unstable

2023-04-19 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7476a059 by Salvatore Bonaccorso at 2023-04-19T08:08:16+02:00 Track fixes for thunderbird via unstable - - - - - 1 changed file: - data/CVE/list Changes: