[Git][security-tracker-team/security-tracker][master] Track proposed mariadb updates for bullseye-pu and bookworm-pu

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ea29c636 by Salvatore Bonaccorso at 2023-12-01T07:06:09+01:00 Track proposed mariadb updates for bullseye-pu and bookworm-pu - - - - - 2 changed files: -

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3679-1 for vlc

2023-11-30 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 684f7571 by Adrian Bunk at 2023-11-30T23:50:53+00:00 Reserve DLA-3679-1 for vlc - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3678-1 for horizon

2023-11-30 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 7edadaf7 by Guilhem Moulin at 2023-12-01T00:43:45+01:00 Reserve DLA-3678-1 for horizon - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Remove flatpak from dla-needed.txt

2023-11-30 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e9a816a by Markus Koschany at 2023-11-30T23:11:40+01:00 Remove flatpak from dla-needed.txt As discussed with Sylvain via private email. Here is my reasoning from 13.07.2023 again. CVE-2023-28100

[Git][security-tracker-team/security-tracker][master] Add Debian bug references for python-aiohttp issues

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8bf283d8 by Salvatore Bonaccorso at 2023-11-30T22:52:11+01:00 Add Debian bug references for python-aiohttp issues - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2023-33201,CVE-2023-33202,bouncycastle: fixed in unstable

2023-11-30 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 0fde016a by Markus Koschany at 2023-11-30T22:29:20+01:00 CVE-2023-33201,CVE-2023-33202,bouncycastle: fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-4770 as NFU

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 896b76f2 by Salvatore Bonaccorso at 2023-11-30T22:24:55+01:00 Add CVE-2023-4770 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track proposed update for gnutls28 for bullseye-pu

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 46d74f16 by Salvatore Bonaccorso at 2023-11-30T22:03:46+01:00 Track proposed update for gnutls28 for bullseye-pu - - - - - 1 changed file: - data/next-oldstable-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] track proposed update for gnutls28 via bookworm-pu

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d2101158 by Salvatore Bonaccorso at 2023-11-30T22:00:31+01:00 track proposed update for gnutls28 via bookworm-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process more NFUs

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f157bca7 by Salvatore Bonaccorso at 2023-11-30T21:37:52+01:00 Process more NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Associate two older NFUs with phpmemcachedadmin

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a2e2d37 by Salvatore Bonaccorso at 2023-11-30T21:32:46+01:00 Associate two older NFUs with phpmemcachedadmin - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add two issues for phpmemcachedadmin, itp'ed, #776613

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 459651e8 by Salvatore Bonaccorso at 2023-11-30T21:31:21+01:00 Add two issues for phpmemcachedadmin, itped, #776613 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d89913d3 by Salvatore Bonaccorso at 2023-11-30T21:27:38+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 04525b33 by security tracker role at 2023-11-30T20:12:07+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add note about zbar fixes and upstream status

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 38853dc4 by Salvatore Bonaccorso at 2023-11-30T21:04:37+01:00 Add note about zbar fixes and upstream status - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add references for CVE-2023-49081

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: edb0be1a by Salvatore Bonaccorso at 2023-11-30T20:55:51+01:00 Add references for CVE-2023-49081 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add references for CVE-2023-49082

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 28f42944 by Salvatore Bonaccorso at 2023-11-30T20:52:43+01:00 Add references for CVE-2023-49082 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-2906/wireshark does not affect buster

2023-11-30 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: abedeab8 by Adrian Bunk at 2023-11-30T19:57:31+02:00 CVE-2023-2906/wireshark does not affect buster - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2023-39350,CVE-2023-39351/freerdp2: reference introductory commit

2023-11-30 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: e6bd87b4 by Sylvain Beucler at 2023-11-30T18:14:39+01:00 CVE-2023-39350,CVE-2023-39351/freerdp2: reference introductory commit - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3677-1 for gimp-dds

2023-11-30 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: f39d857b by Adrian Bunk at 2023-11-30T18:52:24+02:00 Reserve DLA-3677-1 for gimp-dds - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3676-1 for libde265

2023-11-30 Thread Anton Gladky (@gladk)
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: 808dc32e by Anton Gladky at 2023-11-30T17:39:19+01:00 Reserve DLA-3676-1 for libde265 - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] chromium DSA

2023-11-30 Thread Andres Salomon (@dilinger)
Andres Salomon pushed to branch master at Debian Security Tracker / security-tracker Commits: 64518309 by Andres Salomon at 2023-11-30T11:34:08-05:00 chromium DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add one missing CVE which is fixed as well (sync with kernel-sec)

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 090df1f0 by Salvatore Bonaccorso at 2023-11-30T17:15:18+01:00 Add one missing CVE which is fixed as well (sync with kernel-sec) - - - - - 1 changed file: - data/next-point-update.txt

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-6111 in sync with kernel-sec

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8b913a65 by Salvatore Bonaccorso at 2023-11-30T17:13:55+01:00 Update status for CVE-2023-6111 in sync with kernel-sec - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new virtuoso-opensource issues

2023-11-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2964fd61 by Moritz Muehlenhoff at 2023-11-30T17:12:28+01:00 new virtuoso-opensource issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new aiohttp issues

2023-11-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 671749a2 by Moritz Muehlenhoff at 2023-11-30T17:05:43+01:00 new aiohttp issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixes for linux via upcoming point release

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1fdf9c09 by Salvatore Bonaccorso at 2023-11-30T17:01:54+01:00 Track fixes for linux via upcoming point release - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] LTS: claim horizon in dla-needed.txt

2023-11-30 Thread Guilhem Moulin (@guilhem)
Guilhem Moulin pushed to branch master at Debian Security Tracker / security-tracker Commits: 4818f8aa by Guilhem Moulin at 2023-11-30T16:41:09+01:00 LTS: claim horizon in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] data/CVE/list: add note about CVE-2022-3437/samba. regression risky

2023-11-30 Thread Santiago R.R. (@santiago)
Santiago R.R. pushed to branch master at Debian Security Tracker / security-tracker Commits: 7b6346ec by Santiago Ruano Rincón at 2023-11-30T12:26:11-03:00 data/CVE/list: add note about CVE-2022-3437/samba. regression risky - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3675-1 for zbar

2023-11-30 Thread @rouca
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker Commits: 4da3d8e8 by Bastien Roucariès at 2023-11-30T14:33:04+00:00 Reserve DLA-3675-1 for zbar - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3674-1 for thunderbird

2023-11-30 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: d2d19d76 by Emilio Pozuelo Monfort at 2023-11-30T15:25:02+01:00 Reserve DLA-3674-1 for thunderbird - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: eaf40c64 by Moritz Muehlenhoff at 2023-11-30T14:46:17+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2023-6378/logback: buster postponed

2023-11-30 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c010888 by Sylvain Beucler at 2023-11-30T14:11:12+01:00 CVE-2023-6378/logback: buster postponed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 6 commits: CVE-2023-39358,CVE-2023-39360/cacti: buster not-affected + more links

2023-11-30 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: c2cd83ad by Sylvain Beucler at 2023-11-30T13:36:14+01:00 CVE-2023-39358,CVE-2023-39360/cacti: buster not-affected + more links - - - - - 5c29eb62 by Sylvain Beucler at 2023-11-30T13:36:16+01:00

[Git][security-tracker-team/security-tracker][master] NFUs

2023-11-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 6334abbe by Moritz Muehlenhoff at 2023-11-30T12:29:18+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] LTS: Claim tinymce in dla-needed.txt

2023-11-30 Thread Sean Whitton (@spwhitton)
Sean Whitton pushed to branch master at Debian Security Tracker / security-tracker Commits: 73af63b5 by Sean Whitton at 2023-11-30T09:25:28+00:00 LTS: Claim tinymce in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2023-34854, CVE-2022-45592/hoteldruid: follow stable triage for buster (too little information)

2023-11-30 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 591b7686 by Sylvain Beucler at 2023-11-30T09:53:42+01:00 CVE-2023-34854,CVE-2022-45592/hoteldruid: follow stable triage for buster (too little information) - - - - - 9a229634 by Sylvain Beucler at

[Git][security-tracker-team/security-tracker][master] bookworm/bullseye triage

2023-11-30 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4973ede0 by Moritz Muehlenhoff at 2023-11-30T09:49:24+01:00 bookworm/bullseye triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e8788693 by Salvatore Bonaccorso at 2023-11-30T09:47:35+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: take gimp-dds

2023-11-30 Thread Adrian Bunk (@bunk)
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: ab06ac4e by Adrian Bunk at 2023-11-30T10:38:42+02:00 dla: take gimp-dds - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Remove notes from CVE-2022-28958

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 58746a30 by Salvatore Bonaccorso at 2023-11-30T09:29:12+01:00 Remove notes from CVE-2022-28958 This record was withdrawn by its CNA. Further investigation showed that it was not a security

[Git][security-tracker-team/security-tracker][master] automatic update

2023-11-30 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9ccc48bc by security tracker role at 2023-11-30T08:11:57+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list