[Git][security-tracker-team/security-tracker][master] Revert "LTS: ignored -> not-affected for CVE-2021-34432"

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e01d244f by Salvatore Bonaccorso at 2021-10-27T05:59:38+02:00 Revert LTS: ignored - not-affected for CVE-2021-34432 This reverts commit d3c76c38af6ddea7e776d31fefb723a463c52851. Link:

[Git][security-tracker-team/security-tracker][master] Revert "Reserve DLA-2794-1 for mosquitto"

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6769b1f4 by Salvatore Bonaccorso at 2021-10-27T05:55:55+02:00 Revert Reserve DLA-2794-1 for mosquitto There seem to be doupled allocation. This reverts commit

[Git][security-tracker-team/security-tracker][master] 3 commits: LTS: ignored -> not-affected for CVE-2021-34432

2021-10-26 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: d3c76c38 by Anton Gladky at 2021-10-26T23:32:46+02:00 LTS: ignored - not-affected for CVE-2021-34432 - - - - - f61b955a by Anton Gladky at 2021-10-26T23:32:46+02:00 Reserve DLA-2793-1 for mosquitto -

[Git][security-tracker-team/security-tracker][master] Update CVE-2021-30851 from webkit2gtk/wpewebkit advisory WSA-2021-0006

2021-10-26 Thread Alberto Garcia (@berto)
Alberto Garcia pushed to branch master at Debian Security Tracker / security-tracker Commits: ad7f7810 by Alberto Garcia at 2021-10-26T22:54:57+02:00 Update CVE-2021-30851 from webkit2gtk/wpewebkit advisory WSA-2021-0006 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2011-2195/websvn

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2faf9219 by Salvatore Bonaccorso at 2021-10-26T22:44:06+02:00 Add CVE-2011-2195/websvn - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a1487cff by Salvatore Bonaccorso at 2021-10-26T22:42:43+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4118{2,3,4}/jqueryui

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2fc6206c by Salvatore Bonaccorso at 2021-10-26T22:36:15+02:00 Add CVE-2021-4118{2,3,4}/jqueryui - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update status for some new webkit2gtk and wpewebkit issues

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fdbb1354 by Salvatore Bonaccorso at 2021-10-26T22:24:05+02:00 Update status for some new webkit2gtk and wpewebkit issues - - - - - 2 changed files: - data/CVE/list - data/DSA/list

[Git][security-tracker-team/security-tracker][master] Additionally reference oss-security post for CVE-2021-21703

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b0db2cf6 by Salvatore Bonaccorso at 2021-10-26T22:15:18+02:00 Additionally reference oss-security post for CVE-2021-21703 Its somehow redundant this time, because it is just a markdown copy of

[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2021-3670

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 90f8892d by Salvatore Bonaccorso at 2021-10-26T22:13:45+02:00 Reference upstream commit for CVE-2021-3670 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a0f49502 by security tracker role at 2021-10-26T20:10:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-3760/linux

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d1d346f by Salvatore Bonaccorso at 2021-10-26T22:06:29+02:00 Add CVE-2021-3760/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixes for CVE-2021-3047{3,4,5}/aom

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 82bdd52c by Salvatore Bonaccorso at 2021-10-26T21:52:57+02:00 Track fixes for CVE-2021-3047{3,4,5}/aom - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla: claim elfutils

2021-10-26 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: a363aeb4 by Adrian Bunk at 2021-10-26T21:03:41+03:00 dla: claim elfutils - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] dla: add and claim php7.0

2021-10-26 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 24b54a97 by Sylvain Beucler at 2021-10-26T19:46:32+02:00 dla: add and claim php7.0 - local-root vulnerability - referenced in security tracker 5 days ago - fixed yesterday in stable/oldstable - Im

[Git][security-tracker-team/security-tracker][master] dla: claim cron

2021-10-26 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 09f3d5cf by Adrian Bunk at 2021-10-26T20:38:10+03:00 dla: claim cron - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] dla: claim gpsd

2021-10-26 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 67e687f8 by Adrian Bunk at 2021-10-26T20:31:52+03:00 dla: claim gpsd - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] dla: give back botan1.10

2021-10-26 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: a0a1478e by Adrian Bunk at 2021-10-26T20:18:08+03:00 dla: give back botan1.10 The fix is not huge, but I am not feeling confident how to backport. - - - - - 1 changed file: - data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Claim opencv in dla-needed.txt

2021-10-26 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 271be626 by Markus Koschany at 2021-10-26T16:52:52+02:00 Claim opencv in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process several NFUs

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 920ac05a by Salvatore Bonaccorso at 2021-10-26T11:18:29+02:00 Process several NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f4e3f84 by security tracker role at 2021-10-26T08:10:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reclaim redis and update note.

2021-10-26 Thread Chris Lamb (@lamby)
) NOTE: 20211006: buster-pu filed in #995825. (lamby) + NOTE: 20211026: Waiting for input from SRM / security team. (lamby) -- rustc NOTE: rust-doc in stretch-lts (and jessie-lts) is not installable View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-3802/udisks2

2021-10-26 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d9662542 by Salvatore Bonaccorso at 2021-10-26T08:22:38+02:00 Add CVE-2021-3802/udisks2 - - - - - 1 changed file: - data/CVE/list Changes: =