[Git][security-tracker-team/security-tracker][master] Add CVE-2024-23307/linux

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2e08a0d8 by Salvatore Bonaccorso at 2024-01-25T14:39:58+01:00 Add CVE-2024-23307/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3720-1 for thunderbird

2024-01-25 Thread Emilio Pozuelo Monfort (@pochu)
: 20231016: Still reviewing+testing CVEs. (bunk) NOTE: 20231120: DLA coming soon. (bunk) -- -thunderbird (Emilio) - NOTE: 20240125: Added by pochu --- tiff NOTE: 20231231: Added by Front-Desk (lamby) NOTE: 20231231: CVE-2023-3576 already fixed in bullseye via DSA or point release(s

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-22099/linux

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c24ca62f by Salvatore Bonaccorso at 2024-01-25T14:42:45+01:00 Add CVE-2024-22099/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] lts: take firefox-esr and thunderbird

2024-01-25 Thread Emilio Pozuelo Monfort (@pochu)
: = data/dla-needed.txt = @@ -85,6 +85,9 @@ edk2 exiftags NOTE: 20240121: Added by Front-Desk (apo) -- +firefox-esr (Emilio) + NOTE: 20240125: Added by pochu +-- freeimage NOTE: 20240121: Added by Front-Desk (apo) -- @@ -275,6 +278,9

[Git][security-tracker-team/security-tracker][master] LTS: claim libspreadsheet-parsexlsx-perl in dla-needed.txt

2024-01-25 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 339a1f53 by Guilhem Moulin at 2024-01-25T14:06:31+01:00 LTS: claim libspreadsheet-parsexlsx-perl in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-33630/linux

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ddad28d4 by Salvatore Bonaccorso at 2024-01-25T19:20:50+01:00 Add CVE-2021-33630/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0914/opencryptoki

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3a1e824c by Salvatore Bonaccorso at 2024-01-26T08:37:29+01:00 Add CVE-2024-0914/opencryptoki - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0874/coredns, itp'ed

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: db281fa3 by Salvatore Bonaccorso at 2024-01-26T08:39:53+01:00 Add CVE-2024-0874/coredns, itped - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] add indent reference / unimportant

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1fe4c679 by Moritz Muehlenhoff at 2024-01-26T08:51:13+01:00 add indent reference / unimportant - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-0911/indent

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 616a170f by Salvatore Bonaccorso at 2024-01-26T08:39:02+01:00 Add CVE-2024-0911/indent - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 13fa0a51 by Moritz Muehlenhoff at 2024-01-26T08:49:54+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] fill in details for openssl issue

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
in 3.0 and 3.1 + [bookworm] - openssl (Minor issue) + [bullseye] - openssl (Minor issue) + NOTE: https://www.openssl.org/news/secadv/20240125.txt + NOTE: https://github.com/openssl/openssl/commit/041962b429ebe748c8b6b7922980dfb6decfef26 (master) + NOTE: https

[Git][security-tracker-team/security-tracker][master] xerces-c ospu

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c92a843 by Moritz Mühlenhoff at 2024-01-25T21:09:32+01:00 xerces-c ospu - - - - - 1 changed file: - data/next-oldstable-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Remove atril as it is going to be fixed via the point release

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0aca0c76 by Salvatore Bonaccorso at 2024-01-25T21:19:17+01:00 Remove atril as it is going to be fixed via the point release - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-52076/atril

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 26ce8bb5 by Salvatore Bonaccorso at 2024-01-25T21:25:52+01:00 Add CVE-2023-52076/atril - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] dla: tidy golang triage

2024-01-25 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e6e7c86 by Sylvain Beucler at 2024-01-25T22:20:28+01:00 dla: tidy golang triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add new gitlab issues

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38bb490a by Salvatore Bonaccorso at 2024-01-25T22:43:11+01:00 Add new gitlab issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-52076/atril

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3827c008 by Salvatore Bonaccorso at 2024-01-25T22:29:26+01:00 Add Debian bug reference for CVE-2023-52076/atril - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for mathtex issues

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 84158fb0 by Salvatore Bonaccorso at 2024-01-25T22:12:08+01:00 Add Debian bug reference for mathtex issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for shim issues

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 90ed3aa2 by Salvatore Bonaccorso at 2024-01-25T22:00:43+01:00 Add Debian bug reference for shim issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-52356/tiff

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c2cec7c by Salvatore Bonaccorso at 2024-01-25T22:44:57+01:00 Add Debian bug reference for CVE-2023-52356/tiff - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3721-1 for xorg-server

2024-01-25 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: fd1078ed by Markus Koschany at 2024-01-25T22:53:07+01:00 Reserve DLA-3721-1 for xorg-server - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add references for shim issues

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b445f8c9 by Salvatore Bonaccorso at 2024-01-25T21:50:00+01:00 Add references for shim issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-33631/linux

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d751dc45 by Salvatore Bonaccorso at 2024-01-25T20:20:51+01:00 Add CVE-2021-33631/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-23656/coreos-dex, itp'ed

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a311ba3e by Salvatore Bonaccorso at 2024-01-25T21:34:54+01:00 Add CVE-2024-23656/coreos-dex, itped - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-23817/dolibarr

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e30904a0 by Salvatore Bonaccorso at 2024-01-25T21:32:47+01:00 Add CVE-2024-23817/dolibarr - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] dla: retake

2024-01-25 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: ab9de5e0 by Adrian Bunk at 2024-01-26T00:04:23+02:00 dla: retake - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2024-22749/gpac: buster end-of-life

2024-01-25 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: eca6e58b by Sylvain Beucler at 2024-01-25T22:55:18+01:00 CVE-2024-22749/gpac: buster end-of-life - - - - - 3b1c9bfe by Sylvain Beucler at 2024-01-25T22:55:19+01:00 CVE-2023-52354/chasquid: buster

[Git][security-tracker-team/security-tracker][master] tinyxml spu/ospu

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 87317b78 by Moritz Mühlenhoff at 2024-01-25T21:11:07+01:00 tinyxml spu/ospu - - - - - 2 changed files: - data/next-oldstable-point-update.txt - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] atril spu

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 31aed08b by Moritz Mühlenhoff at 2024-01-25T21:12:59+01:00 atril spu - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b7fb9bfa by security tracker role at 2024-01-25T20:22:56+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-22749/gpac

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 37ad1e7a by Salvatore Bonaccorso at 2024-01-25T21:35:18+01:00 Add CVE-2024-22749/gpac - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2014-9485

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2acf0b5d by Salvatore Bonaccorso at 2024-01-25T20:54:34+01:00 Update information for CVE-2014-9485 The reason to bump the Debian revision fixing the issue to 1.1-6 is that only the followup

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ac65edf0 by Salvatore Bonaccorso at 2024-01-25T21:31:18+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2024-0727/openssl: buster postponed

2024-01-25 Thread Sylvain Beucler (@beuc)
) NOTE: https://www.openssl.org/news/secadv/20240125.txt NOTE: https://github.com/openssl/openssl/commit/041962b429ebe748c8b6b7922980dfb6decfef26 (master) NOTE: https://github.com/openssl/openssl/commit/8a85df7c60ba1372ee98acc5982e902d75f52130 (master) View it on GitLab

[Git][security-tracker-team/security-tracker][master] NFUs

2024-01-25 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ba0caab9 by Moritz Muehlenhoff at 2024-01-25T10:08:29+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-01-25 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 294451f6 by security tracker role at 2024-01-25T08:11:42+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list