[Git][security-tracker-team/security-tracker][master] LTS: add xqilla

2023-07-05 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: 3cd9e307 by Anton Gladky at 2023-07-06T06:54:41+02:00 LTS: add xqilla - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2023-35170 (duplicate CVE)

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8cbaa299 by Salvatore Bonaccorso at 2023-07-05T22:39:17+02:00 Remove notes from CVE-2023-35170 (duplicate CVE) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some more NFUs

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1d63a02c by Salvatore Bonaccorso at 2023-07-05T22:34:27+02:00 Process some more NFUs - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update CVE-2023-33460 information for ruby-yajl

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9d945fe1 by Salvatore Bonaccorso at 2023-07-05T22:32:07+02:00 Update CVE-2023-33460 information for ruby-yajl This is one reason why we in security-tracking of CVEs for sources embedding

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-34457/python-mechanicalsoup

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 89ebeca2 by Salvatore Bonaccorso at 2023-07-05T22:30:09+02:00 Add CVE-2023-34457/python-mechanicalsoup - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add new glpi issues

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 03ee1307 by Salvatore Bonaccorso at 2023-07-05T22:27:09+02:00 Add new glpi issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] DLA-3479-1 for golang-yaml.v2

2023-07-05 Thread @roberto
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 2aa48306 by Roberto C. Sánchez at 2023-07-05T16:26:20-04:00 DLA-3479-1 for golang-yaml.v2 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1bf24e3f by Salvatore Bonaccorso at 2023-07-05T22:25:14+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-3515/gitea

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9defe9e4 by Salvatore Bonaccorso at 2023-07-05T22:24:11+02:00 Add CVE-2023-3515/gitea - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 76cc0da5 by security tracker role at 2023-07-05T20:12:38+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-35001/linux

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fad61a73 by Salvatore Bonaccorso at 2023-07-05T22:04:41+02:00 Add CVE-2023-35001/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-31248/linux

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ace6209d by Salvatore Bonaccorso at 2023-07-05T22:03:19+02:00 Add CVE-2023-31248/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Adjust comment to cover 6.1.y versions

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0f34a87d by Salvatore Bonaccorso at 2023-07-05T21:26:28+02:00 Adjust comment to cover 6.1.y versions - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for linux update

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ee5d3be4 by Salvatore Bonaccorso at 2023-07-05T21:22:54+02:00 Reserve DSA number for linux update - - - - - 1 changed file: - data/DSA/list Changes: =

[Git][security-tracker-team/security-tracker][master] LTS: CVE-2021-4235/golang-yaml.v2 will be fixed

2023-07-05 Thread @roberto
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: d3257ff8 by Roberto C. Sánchez at 2023-07-05T14:52:58-04:00 LTS: CVE-2021-4235/golang-yaml.v2 will be fixed - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla: unclaim python-glance-store

2023-07-05 Thread Jochen Sprickerhof (@jspricke)
: = data/dla-needed.txt = @@ -176,9 +176,11 @@ php-dompdf pypdf2 (Adrian Bunk) NOTE: 20230705: Added by Front-Desk (gladk) -- -python-glance-store (jspricke) +python-glance-store NOTE: 20230525: Added by Front-Desk (lamby) NOTE

[Git][security-tracker-team/security-tracker][master] CVE-2020-36649 fixed in older suites

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: beb1adb3 by Moritz Muehlenhoff at 2023-07-05T19:43:37+02:00 CVE-2020-36649 fixed in older suites - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] mediawiki DSA

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 49580bd3 by Moritz Mühlenhoff at 2023-07-05T19:38:59+02:00 mediawiki DSA - - - - - 3 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] remove for one mw issue which will be fixed in DSA

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e3dbb466 by Moritz Muehlenhoff at 2023-07-05T19:29:08+02:00 remove postponed for one mw issue which will be fixed in DSA - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] LTS: take over golang-yaml.v2 and qt4-x11

2023-07-05 Thread @roberto
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: eb2475ef by Roberto C. Sánchez at 2023-07-05T13:16:02-04:00 LTS: take over golang-yaml.v2 and qt4-x11 - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-33460 does not affect ruby-yajl

2023-07-05 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: 9513f0d4 by Tobias Frost at 2023-07-05T17:54:17+02:00 CVE-2023-33460 does not affect ruby-yajl ruby-yail embeds yajl version 1.0.12

[Git][security-tracker-team/security-tracker][master] two new gitlab issues

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b6e14872 by Moritz Muehlenhoff at 2023-07-05T17:31:01+02:00 two new gitlab issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] one more linux issue unimportant

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b3eb92cc by Moritz Muehlenhoff at 2023-07-05T17:17:51+02:00 one more linux issue unimportant - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] dla: take pypdf2

2023-07-05 Thread Adrian Bunk (@bunk)
= @@ -173,7 +173,7 @@ php-dompdf NOTE: 20230618: Added by Front-Desk (opal) NOTE: 20230618: Low priority but higher than to not fix it. -- -pypdf2 +pypdf2 (Adrian Bunk) NOTE: 20230705: Added by Front-Desk (gladk) -- python-glance-store (jspricke) View

[Git][security-tracker-team/security-tracker][master] Update CVE-2023-34256 and consider it unimportant

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ef27714e by Salvatore Bonaccorso at 2023-07-05T16:49:09+02:00 Update CVE-2023-34256 and consider it unimportant - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] mark a few linux issues as non issues

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 60a44245 by Moritz Muehlenhoff at 2023-07-05T16:19:40+02:00 mark a few linux issues as non issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track two source-wise fixed issues in linux/6.1.37-1 but irrelevant for the DSA

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5f7bd521 by Salvatore Bonaccorso at 2023-07-05T16:12:18+02:00 Track two source-wise fixed issues in linux/6.1.37-1 but irrelevant for the DSA - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] libpam-krb5 unimportant

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bfbc782b by Moritz Muehlenhoff at 2023-07-05T15:58:58+02:00 libpam-krb5 unimportant - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new orthanc issue

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4788b86d by Moritz Muehlenhoff at 2023-07-05T15:48:42+02:00 new orthanc issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9cd8fcea by Moritz Muehlenhoff at 2023-07-05T15:39:57+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new ruby::uri issue, apply some hacks to mark Buster as affected

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d7bbfc1c by Moritz Muehlenhoff at 2023-07-05T15:16:07+02:00 new ruby::uri issue, apply some hacks to mark Buster as affected - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add notes for CVE-2023-3269

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25d57aa3 by Salvatore Bonaccorso at 2023-07-05T15:04:51+02:00 Add notes for CVE-2023-3269 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-3269/linux

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a35ccdde by Salvatore Bonaccorso at 2023-07-05T15:00:15+02:00 Add CVE-2023-3269/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reclaim qt4-x11

2023-07-05 Thread Scarlett Gately Moore (@sgmoore)
Scarlett Gately Moore pushed to branch master at Debian Security Tracker / security-tracker Commits: 70dc0fcd by Scarlett Moore at 2023-07-05T04:57:05-07:00 Reclaim qt4-x11 - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2023-07-05 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2e651ad6 by Moritz Muehlenhoff at 2023-07-05T11:29:25+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove notes from now REJECTED CVE

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e77e12b9 by Salvatore Bonaccorso at 2023-07-05T10:41:33+02:00 Remove notes from now REJECTED CVE - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: be892357 by security tracker role at 2023-07-05T08:11:59+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-24535

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b8f8ae5b by Salvatore Bonaccorso at 2023-07-05T08:36:56+02:00 Add CVE-2023-24535 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-3255/qemu

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0713a625 by Salvatore Bonaccorso at 2023-07-05T08:28:54+02:00 Add CVE-2023-3255/qemu - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-23064/jquery

2023-07-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 786f4406 by Salvatore Bonaccorso at 2023-07-05T08:14:58+02:00 Add CVE-2020-23064/jquery - - - - - 1 changed file: - data/CVE/list Changes: =