[Git][security-tracker-team/security-tracker][master] CVE-2023-24329 seems still unfixed in python3.11

2023-02-25 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: abf43d25 by Adrian Bunk at 2023-02-25T12:39:36+02:00 CVE-2023-24329 seems still unfixed in python3.11 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-02-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b5fcac5 by security tracker role at 2023-02-25T08:10:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-24607/qt6-base via unstable

2023-02-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f09c202 by Salvatore Bonaccorso at 2023-02-25T15:04:30+01:00 Track fixed version for CVE-2023-24607/qt6-base via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] LTS: claim php7.3 in dla-needed.txt

2023-02-25 Thread Guilhem Moulin (@guilhem)
/dla-needed.txt = @@ -192,7 +192,7 @@ php-cas NOTE: 20221110: upcoming DSA (Beuc/front-desk) NOTE: 20230206: VCS: https://salsa.debian.org/lts-team/packages/php-cas.git -- -php7.3 +php7.3 (guilhem) NOTE: 20230225: Programming language: C. NOTE

[Git][security-tracker-team/security-tracker][master] CVE-2022-48338: Vulnerable code introduced after buster

2023-02-25 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: aba22d17 by Adrian Bunk at 2023-02-25T12:28:10+02:00 CVE-2022-48338: Vulnerable code introduced after buster - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2017-1000

2023-02-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ec9c4000 by Salvatore Bonaccorso at 2023-02-25T15:06:15+01:00 Remove notes from CVE-2017-1000 It was rejected. It was said to be unused in the CNA pool for an issue during 2017. I fact we

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2023-02-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a318bda1 by Salvatore Bonaccorso at 2023-02-25T10:58:40+01:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: add php7.3 to dla-needed.txt

2023-02-25 Thread Ola Lundqvist (@opal)
://salsa.debian.org/debian/man2html.git -- +mariadb-10.3 + NOTE: 20230225: Programming language: C. + NOTE: 20230225: VCS: https://salsa.debian.org/mariadb-team/mariadb-10.3/-/commits/buster + NOTE: 20230225: Testsuite: https://lists.debian.org/debian-lts/2019/07/msg00049.html + NOTE: 20230225

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3344-1 for nodejs

2023-02-25 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 4835b67a by Guilhem Moulin at 2023-02-26T01:59:55+01:00 Reserve DLA-3344-1 for nodejs - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add links to follow-up commits for CVE-2022-32212/nodejs.

2023-02-25 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d7bcbe5 by Guilhem Moulin at 2023-02-25T19:21:16+01:00 Add links to follow-up commits for CVE-2022-32212/nodejs. - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2023-24809 (nethack) marked as no-dsa as it is a minor issue.

2023-02-25 Thread Ola Lundqvist (@opal)
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: 87bc864a by Ola Lundqvist at 2023-02-26T00:00:29+01:00 CVE-2023-24809 (nethack) marked as no-dsa as it is a minor issue. - - - - - 6284f44b by Ola Lundqvist at 2023-02-26T00:21:56+01:00 LTS: add

[Git][security-tracker-team/security-tracker][fix_987283] Check whether the ignored-debian-bug-packages is changed

2023-02-25 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch fix_987283 at Debian Security Tracker / security-tracker Commits: 32e39839 by Anton Gladky at 2023-02-25T23:26:12+01:00 Check whether the ignored-debian-bug-packages is changed - - - - - 1 changed file: - lib/python/security_db.py Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2023-23919/nodejs as not-affected for buster.

2023-02-25 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e00fb79 by Guilhem Moulin at 2023-02-25T21:40:19+01:00 Mark CVE-2023-23919/nodejs as not-affected for buster. And add reference to the disclosure report, where (unlike the CVE text) upstream claims

[Git][security-tracker-team/security-tracker][fix_987283] Simplify DELETE FROM functions

2023-02-25 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch fix_987283 at Debian Security Tracker / security-tracker Commits: 0b6fc947 by Anton Gladky at 2023-02-25T22:45:48+01:00 Simplify DELETE FROM functions - - - - - 1 changed file: - lib/python/security_db.py Changes: =