[Git][security-tracker-team/security-tracker][master] LTS: take freeimage

2023-11-01 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: ce2e749f by Anton Gladky at 2023-11-02T06:13:42+01:00 LTS: take freeimage - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-46407/ffmpeg

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dac6f700 by Salvatore Bonaccorso at 2023-11-01T22:26:23+01:00 Update status for CVE-2023-46407/ffmpeg The issue is located in the libavcodec/jpegxl_parser.c only recently added to ffmpeg and

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e9af14f by Salvatore Bonaccorso at 2023-11-01T21:45:44+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Fix spacing between CVE and temporary description

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: aa784afb by Salvatore Bonaccorso at 2023-11-01T21:44:42+01:00 Fix spacing between CVE and temporary description - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-46846/squid assigned

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 34648c8e by Salvatore Bonaccorso at 2023-11-01T21:37:48+01:00 CVE-2023-46846/squid assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-46848/squid assigned

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 412896fd by Salvatore Bonaccorso at 2023-11-01T21:36:40+01:00 CVE-2023-46848/squid assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-5824/squid assigned

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 73e3604a by Salvatore Bonaccorso at 2023-11-01T21:35:02+01:00 CVE-2023-5824/squid assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE assigned for CVE-2023-46847/squid

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5c80ccb4 by Salvatore Bonaccorso at 2023-11-01T21:34:06+01:00 CVE assigned for CVE-2023-46847/squid - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Remove "not public yet" note

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bc1e8236 by Salvatore Bonaccorso at 2023-11-01T21:32:57+01:00 Remove not public yet note - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-46724/squid assigned

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 837dbd01 by Salvatore Bonaccorso at 2023-11-01T21:31:40+01:00 CVE-2023-46724/squid assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c583ae9 by Salvatore Bonaccorso at 2023-11-01T21:30:07+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process three more gpac issues

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f4464538 by Salvatore Bonaccorso at 2023-11-01T21:26:22+01:00 Process three more gpac issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-46931/gpac

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5f960b89 by Salvatore Bonaccorso at 2023-11-01T21:23:52+01:00 Add CVE-2023-46931/gpac - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a50f2813 by Salvatore Bonaccorso at 2023-11-01T21:23:24+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add one additional chromium issue

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 14211f5d by Salvatore Bonaccorso at 2023-11-01T21:20:57+01:00 Add one additional chromium issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 448a5c69 by security tracker role at 2023-11-01T20:17:38+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 56eca282 by security tracker role at 2023-11-01T20:17:33+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] wordpress fixed in sid

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 70ed6280 by Moritz Muehlenhoff at 2023-11-01T21:05:35+01:00 wordpress fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-46695/python-django

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f131531d by Salvatore Bonaccorso at 2023-11-01T21:04:27+01:00 Add CVE-2023-46695/python-django - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version for mysql-8.0 issues fixed via unstable

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: be8ce851 by Salvatore Bonaccorso at 2023-11-01T20:37:00+01:00 Track fixed version for mysql-8.0 issues fixed via unstable The listing of CVEs from the debian/changelog does not look correct,

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2023-5871/libnbd via unstable

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0224e674 by Salvatore Bonaccorso at 2023-11-01T20:34:06+01:00 Track fixed version for CVE-2023-5871/libnbd via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] bugnums

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 08a79f4a by Moritz Muehlenhoff at 2023-11-01T20:25:02+01:00 bugnums - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2023-5871/libnbd

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d2b9eb20 by Salvatore Bonaccorso at 2023-11-01T17:18:56+01:00 Add Debian bug reference for CVE-2023-5871/libnbd - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2023-5871/libnbd

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2886b330 by Salvatore Bonaccorso at 2023-11-01T17:12:33+01:00 Update information on CVE-2023-5871/libnbd - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream tag for upstream commit for CVE-2023-43796

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7ff4ee75 by Salvatore Bonaccorso at 2023-11-01T17:07:06+01:00 Add upstream tag for upstream commit for CVE-2023-43796 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-31022 for 460.x version packages

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25f2acd9 by Salvatore Bonaccorso at 2023-11-01T17:03:41+01:00 Update status for CVE-2023-31022 for 460.x version packages - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Slighty update affected status for CVE-2023-46239

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5e36edc9 by Salvatore Bonaccorso at 2023-11-01T17:00:26+01:00 Slighty update affected status for CVE-2023-46239 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Move notes about version to a NOTE entry

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e525540f by Salvatore Bonaccorso at 2023-11-01T16:54:08+01:00 Move notes about version to a NOTE entry - - - - - 1 changed file: - data/embedded-code-copies Changes:

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 49ac3735 by Salvatore Bonaccorso at 2023-11-01T16:51:57+01:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage horizon for buster LTS (CVE-2022-45582)

2023-11-01 Thread Chris Lamb (@lamby)
to backport it. Otherwise - no-dsa. (gladk) -- +horizon + NOTE: 20231101: Added by Front-Desk (lamby) + NOTE: 20231101: Sync with bullseye (CVE-2022-45582). (lamby) +-- i2p NOTE: 20230809: Added by Front-Desk (Beuc) NOTE: 20230809: Experimental issue-based workflow: please self-assign and follow

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage lwip for buster LTS (CVE-2020-22283 & CVE-2020-22284)

2023-11-01 Thread Chris Lamb (@lamby)
: = data/dla-needed.txt = @@ -113,6 +113,10 @@ linux (Ben Hutchings) linux-5.10 NOTE: 20231005: perma-added for LTS package-specific delegation (bwh) -- +lwip + NOTE: 20231101: Added by Front-Desk (lamby) + NOTE: 20231101: Sync

[Git][security-tracker-team/security-tracker][master] 11 commits: Triage CVE-2023-31022 in nvidia-graphics-drivers for buster LTS.

2023-11-01 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 24d48946 by Chris Lamb at 2023-11-01T16:17:35+01:00 Triage CVE-2023-31022 in nvidia-graphics-drivers for buster LTS. - - - - - a29108c9 by Chris Lamb at 2023-11-01T16:18:55+01:00 Triage CVE-2023-31022 in

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9eb509ca by Moritz Muehlenhoff at 2023-11-01T15:26:56+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new synapse issue

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: be0a7971 by Moritz Muehlenhoff at 2023-11-01T15:12:18+01:00 new synapse issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new pypdf issue

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 340d8569 by Moritz Muehlenhoff at 2023-11-01T14:43:12+01:00 new pypdf issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] freerdp2 spu

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3ee9bb40 by Moritz Mühlenhoff at 2023-11-01T12:20:14+01:00 freerdp2 spu - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] exim4 spu

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 97d0d9c9 by Moritz Mühlenhoff at 2023-11-01T12:15:46+01:00 exim4 spu - - - - - 1 changed file: - data/next-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] new nvidia issue

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8cf6aab9 by Moritz Muehlenhoff at 2023-11-01T11:32:08+01:00 new nvidia issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new golang-github-lucas-clemente-quic-go issue

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: db8aafdc by Moritz Muehlenhoff at 2023-11-01T10:52:12+01:00 new golang-github-lucas-clemente-quic-go issue - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: afdbd377 by Moritz Muehlenhoff at 2023-11-01T10:44:12+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] golang-golang-x-image fixed in sid

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7ae69ddf by Moritz Muehlenhoff at 2023-11-01T10:25:28+01:00 golang-golang-x-image fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new gitlab issues

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 68776e1b by Moritz Muehlenhoff at 2023-11-01T10:00:18+01:00 new gitlab issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1914d378 by Moritz Muehlenhoff at 2023-11-01T09:48:23+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-01 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 9925c273 by Moritz Muehlenhoff at 2023-11-01T09:38:50+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-01 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c89f7ce by security tracker role at 2023-11-01T08:12:06+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] document embedded-code copy of enet in assaultcube.

2023-11-01 Thread Tobias Frost (@tobi)
Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker Commits: f9985ab0 by Tobias Frost at 2023-11-01T08:19:49+01:00 document embedded-code copy of enet in assaultcube. - - - - - 1 changed file: - data/embedded-code-copies Changes: