[Git][security-tracker-team/security-tracker][master] Add reference to upstream tag for CVE-2024-2494

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bfd52246 by Salvatore Bonaccorso at 2024-04-05T06:18:21+02:00 Add reference to upstream tag for CVE-2024-2494 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-2494/libvirt via unstable

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 54382f4e by Salvatore Bonaccorso at 2024-04-05T06:17:26+02:00 Track fixed version for CVE-2024-2494/libvirt via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add references for varnish issues

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 267271c9 by Salvatore Bonaccorso at 2024-04-05T06:15:44+02:00 Add references for varnish issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add upstream commits for CVE-2024-30156/varnish

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6e8964c4 by Salvatore Bonaccorso at 2024-04-05T06:13:56+02:00 Add upstream commits for CVE-2024-30156/varnish - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for CVE-2024-28182/nghttp2

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9ad928f5 by Salvatore Bonaccorso at 2024-04-05T06:05:58+02:00 Track fixed version via unstable for CVE-2024-28182/nghttp2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-3026{0,1}/node-undici

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d59b610b by Salvatore Bonaccorso at 2024-04-04T22:40:24+02:00 Add CVE-2024-3026{0,1}/node-undici - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-3116/pgadmin4

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 90c33a64 by Salvatore Bonaccorso at 2024-04-04T22:39:49+02:00 Add CVE-2024-3116/pgadmin4 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-3262/rt

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a0b914ee by Salvatore Bonaccorso at 2024-04-04T22:39:18+02:00 Add CVE-2024-3262/rt - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 30464fce by Salvatore Bonaccorso at 2024-04-04T22:38:30+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9759275c by Salvatore Bonaccorso at 2024-04-04T22:21:58+02:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add apache2 references for issues fixed in 2.4.59

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cd5d1be3 by Salvatore Bonaccorso at 2024-04-04T22:17:33+02:00 Add apache2 references for issues fixed in 2.4.59 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3224f85c by security tracker role at 2024-04-04T20:12:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-3296/rust-openssl

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ab10d0b by Salvatore Bonaccorso at 2024-04-04T22:07:37+02:00 Add Debian bug reference for CVE-2024-3296/rust-openssl - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream reference for CVE-2024-3205/libyaml

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f64ad296 by Salvatore Bonaccorso at 2024-04-04T22:04:17+02:00 Add upstream reference for CVE-2024-3205/libyaml - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-31309/trafficserver

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0389f8b1 by Salvatore Bonaccorso at 2024-04-04T21:53:15+02:00 Add Debian bug reference for CVE-2024-31309/trafficserver - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-28182/nghttp2

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8de9cfff by Salvatore Bonaccorso at 2024-04-04T21:42:26+02:00 Add Debian bug reference for CVE-2024-28182/nghttp2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update references for CVE-2024-31309/trafficserver

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 23c6697b by Salvatore Bonaccorso at 2024-04-04T21:41:22+02:00 Update references for CVE-2024-31309/trafficserver - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Associate CVE-2024-2653 with php-amphp-http and php-amphp-http-client

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4fb380d5 by Salvatore Bonaccorso at 2024-04-04T21:30:56+02:00 Associate CVE-2024-2653 with php-amphp-http and php-amphp-http-client - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update list of CVEs addressed in 6.1.82-1 upload

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b3b89216 by Salvatore Bonaccorso at 2024-04-04T21:09:25+02:00 Update list of CVEs addressed in 6.1.82-1 upload - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Merge Linux kernel CVEs from kernel-sec

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 29549584 by Salvatore Bonaccorso at 2024-04-04T21:03:37+02:00 Merge Linux kernel CVEs from kernel-sec - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] bugnums

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 64410bc8 by Moritz Muehlenhoff at 2024-04-04T21:00:17+02:00 bugnums - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] cockpit DSA

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8b179ec1 by Moritz Mühlenhoff at 2024-04-04T20:51:09+02:00 cockpit DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] new apache2 issues

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a3afc95 by Moritz Muehlenhoff at 2024-04-04T19:39:33+02:00 new apache2 issues - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage tinymce for buster LTS (CVE-2024-29881 & CVE-2024-29881)

2024-04-04 Thread Chris Lamb (@lamby)
) -- +tinymce + NOTE: 20240404: Added by Front-Desk (lamby) + NOTE: 20240404: May be v. difficult to backport and/or not even vulnerable. (lamby) + NOTE: 20240404: Check Ola's commit message in 21503da906. (lamby) +-- tomcat9 (Markus Koschany) NOTE: 20240121: Added by Front-Desk (apo) -- View

[Git][security-tracker-team/security-tracker][master] 6 commits: Triage CVE-2024-30187 in anope for buster LTS.

2024-04-04 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: f10bd73a by Chris Lamb at 2024-04-04T17:12:21+01:00 Triage CVE-2024-30187 in anope for buster LTS. - - - - - c85ae800 by Chris Lamb at 2024-04-04T17:13:59+01:00 Triage CVE-2024-21503 in black for buster

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage xorg-server for buster LTS (CVE-2024-31080,...

2024-04-04 Thread Chris Lamb (@lamby)
be coordinated. (roberto) -- +xorg-server + NOTE: 20240404: Added by Front-Desk (lamby) + NOTE: 20240404: Similar to the fixes within DLA-3721-1, these did not warrant a + NOTE: 20240404: DSA to src:xwayland as it does not run as root, but they + NOTE: 20240404: (may) affect xorg-server in LTS. (lamby

[Git][security-tracker-team/security-tracker][master] CVE-2021-36370/dropbear fixed in 2020.81-3+deb11u1.

2024-04-04 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 2140a000 by Guilhem Moulin at 2024-04-04T18:05:52+02:00 CVE-2021-36370/dropbear fixed in 2020.81-3+deb11u1.

[Git][security-tracker-team/security-tracker][master] new xpdf issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 67198ef0 by Moritz Muehlenhoff at 2024-04-04T15:03:38+02:00 new xpdf issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new apache2 issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f22022dd by Moritz Muehlenhoff at 2024-04-04T15:02:11+02:00 new apache2 issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new libyaml issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e45f199 by Moritz Muehlenhoff at 2024-04-04T15:00:46+02:00 new libyaml issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] add references

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 70389e5d by Moritz Muehlenhoff at 2024-04-04T14:27:49+02:00 add references - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new rust-openssl issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: cf0a18fb by Moritz Muehlenhoff at 2024-04-04T14:24:55+02:00 new rust-openssl issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new ATS issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 05ceae5f by Moritz Muehlenhoff at 2024-04-04T14:00:58+02:00 new ATS issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0b9cda3f by Moritz Muehlenhoff at 2024-04-04T13:27:04+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] xpdf n/a

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f718fc60 by Moritz Muehlenhoff at 2024-04-04T12:33:50+02:00 xpdf n/a - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new nghttp2 issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: c9d033e7 by Moritz Muehlenhoff at 2024-04-04T12:18:39+02:00 new nghttp2 issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 59f6d742 by Moritz Muehlenhoff at 2024-04-04T11:43:45+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: fd02ce70 by Moritz Muehlenhoff at 2024-04-04T11:36:04+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new suricata issue

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ab785dd6 by Moritz Muehlenhoff at 2024-04-04T11:31:10+02:00 new suricata issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2024-04-04 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bf6e6638 by Moritz Muehlenhoff at 2024-04-04T11:20:58+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add cockpit to dsa-needed list

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 69e0b419 by Salvatore Bonaccorso at 2024-04-04T11:18:49+02:00 Add cockpit to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add xorg-server to dsa-needed list

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 66b9529e by Salvatore Bonaccorso at 2024-04-04T11:18:03+02:00 Add xorg-server to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0736fae2 by Salvatore Bonaccorso at 2024-04-04T11:16:39+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-04-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a37013ee by security tracker role at 2024-04-04T08:12:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list