[Git][security-tracker-team/security-tracker][master] lts: triage CVE-2022-3080/bind9 as n/a on buster

2022-10-03 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 5405e55f by Emilio Pozuelo Monfort at 2022-10-03T18:47:04+02:00 lts: triage CVE-2022-3080/bind9 as n/a on buster - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: triage clickhouse

2022-10-03 Thread Anton Gladky (@gladk)
-needed.txt Changes: = data/dla-needed.txt = @@ -26,6 +26,11 @@ bluez NOTE: 20220902: Programming language: C. NOTE: 20220902: Consider synchronizing with Stretch. (apo) -- +clickhouse + NOTE: 20221003: Programming

[Git][security-tracker-team/security-tracker][master] Add upstream tag information for CVE-2022-3875{0,1}

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f5be1d26 by Salvatore Bonaccorso at 2022-10-03T21:05:47+02:00 Add upstream tag information for CVE-2022-3875{0,1} - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2022-41556

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 748bd05a by Salvatore Bonaccorso at 2022-10-03T21:08:35+02:00 Update information for CVE-2022-41556 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2022-2308/linux

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f73a54f6 by Salvatore Bonaccorso at 2022-10-03T21:52:19+02:00 Reference upstream commit for CVE-2022-2308/linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: triage knot-resolver

2022-10-03 Thread Anton Gladky (@gladk)
) -- +knot-resolver + NOTE: 20221003: Programming language: C. +-- kopanocore NOTE: 20220801: Programming language: C++. NOTE: 20220811: Proposed a patch to CVE-2022-26562 (#1016973) -- +libpgjava + NOTE: 20221003: Programming language: Java. +-- linux (Ben Hutchings) -- mbedtls View

[Git][security-tracker-team/security-tracker][master] tinyexr spu

2022-10-03 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e9b712c0 by Moritz Mühlenhoff at 2022-10-03T22:07:48+02:00 tinyexr spu - - - - - 1 changed file: - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a7f1f2d4 by Salvatore Bonaccorso at 2022-10-03T23:32:13+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for four modsecurity-crs issues

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 55b04dd5 by Salvatore Bonaccorso at 2022-10-03T21:16:14+02:00 Track fixed version via unstable for four modsecurity-crs issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add reference to upstream commit for CVE-2022-3100

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 469f9d42 by Salvatore Bonaccorso at 2022-10-03T20:51:44+02:00 Add reference to upstream commit for CVE-2022-3100 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for mediawiki issues via unstable

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 56a7ad0b by Salvatore Bonaccorso at 2022-10-03T21:14:50+02:00 Track fixed version for mediawiki issues via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f6c778ad by security tracker role at 2022-10-03T20:10:27+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] update note. Claim trafficserver,squid

2022-10-03 Thread Abhijith PA (@abhijith)
: Utkarsh prepared a patch and is on testing (abhijith) + NOTE: 20221003: https://github.com/rails/rails/issues/45590#issuecomment-1249123907 (abhijith) -- rainloop NOTE: 20220913: Programming language: PHP, JavaScript. @@ -164,15 +165,16 @@ samba snort NOTE: 20220905: Requires further

[Git][security-tracker-team/security-tracker][master] Add and claim php-twig

2022-10-03 Thread Sebastien Delafond (@seb)
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: f599a628 by Sébastien Delafond at 2022-10-03T08:27:46+02:00 Add and claim php-twig - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0ffec4fe by Salvatore Bonaccorso at 2022-10-03T07:42:22+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 563ac9f8 by security tracker role at 2022-10-03T08:10:13+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2022-10-03 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: a7e3a4a4 by Anton Gladky at 2022-10-03T10:01:51+02:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Anton Gladky gl...@debian.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] triage/fix lighttpd CVEs in buster

2022-10-03 Thread Helmut Grohne (@helmutg)
Helmut Grohne pushed to branch master at Debian Security Tracker / security-tracker Commits: f81458e3 by Helmut Grohne at 2022-10-03T08:11:06+02:00 triage/fix lighttpd CVEs in buster - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] issue DLA-3133-1 for lighttpd fixing CVE-2022-37797

2022-10-03 Thread Helmut Grohne (@helmutg)
Helmut Grohne pushed to branch master at Debian Security Tracker / security-tracker Commits: 8caef9cb by Helmut Grohne at 2022-10-03T09:48:48+02:00 issue DLA-3133-1 for lighttpd fixing CVE-2022-37797 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3134-1 for tzdata

2022-10-03 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c4a710d by Emilio Pozuelo Monfort at 2022-10-03T10:14:37+02:00 Reserve DLA-3134-1 for tzdata - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3135-1 for libdatetime-timezone-perl

2022-10-03 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: c3b40580 by Emilio Pozuelo Monfort at 2022-10-03T10:33:13+02:00 Reserve DLA-3135-1 for libdatetime-timezone-perl - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Partially revert fixed version marking in buster for lighttpd

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 99ff65e7 by Salvatore Bonaccorso at 2022-10-03T11:00:29+02:00 Partially revert fixed version marking in buster for lighttpd - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Remove lts-frontdesk.py (integrated into the dispatch-front-desk script)

2022-10-03 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: 52b9feeb by Anton Gladky at 2022-10-03T12:02:15+02:00 Remove lts-frontdesk.py (integrated into the dispatch-front-desk script) - - - - - fec88202 by Anton Gladky at 2022-10-03T12:03:08+02:00 LTS:

[Git][security-tracker-team/security-tracker][master] CVE-2022-35256/nodejs: reference patches, buster not-affected

2022-10-03 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: cc7a7b4d by Sylvain Beucler at 2022-10-03T12:53:56+02:00 CVE-2022-35256/nodejs: reference patches, buster not-affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2021-44537/owncloud-client via unstable

2022-10-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c0a421e4 by Salvatore Bonaccorso at 2022-10-03T15:00:05+02:00 Track fixed version for CVE-2021-44537/owncloud-client via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2022-35255/nodejs: reference patches, buster not-affected

2022-10-03 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: ac1e0a17 by Sylvain Beucler at 2022-10-03T13:03:36+02:00 CVE-2022-35255/nodejs: reference patches, buster not-affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] lts: take bind9

2022-10-03 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: c95f9814 by Emilio Pozuelo Monfort at 2022-10-03T17:17:49+02:00 lts: take bind9 - - - - - 1 changed file: - data/dla-needed.txt Changes: =