Messages by Thread
-
[Git][security-tracker-team/security-tracker][master] dla-needed: update NOTEs on packages I'm working on
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-36600/libcdio
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2025-69725
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2025-61147/libde265
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26198/ormar
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for node-rollup issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for two rust-wasmtime issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2024-36600/libcdio
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for spip issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28351/pypdf
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28422/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] vim issues: prefix fixing commit
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28421/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28420/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28419/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28418/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28417/vim
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add lxd to dsa-needed list
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] dsa-needed: claim spip
Sebastien Delafond (@seb)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-26269/vim: postpone for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-27205/flask via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fix via experimental for CVE-2024-52522/rclone
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for thunderbid issues fixed for mfsa2026-17
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Process two NFUs in HTTP-Session2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27457/weblate, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new issues for pluxml
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27734/beszel, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for two CVEs for firefox specific for Firefox on Android
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2776/firefox
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track introducing commit for CVE-2024-53908
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Triage CVE-2024-53908 in python-django for bookworm.
Chris Lamb (@lamby)
-
[Git][security-tracker-team/security-tracker][master] Fix for CVE-2026-25731 is too intrusive to backport. Changeset
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Drop glib2.0 from dla-needed.txt
Andreas Henriksson (@ah)
-
[Git][security-tracker-team/security-tracker][master] Add two new spip issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-25741/zulip-server, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28364/ocaml
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-28370/vitrage
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new vips issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-27699/node-proxy-agents via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-28372/inetutils assigned
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: Update tag for introducing commit for CVE-2026-3202
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for mumble issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add temporary entry for mumble issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2021-4456/libnet-cidr-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-40932/libapache-sessionx-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-61146/libsixel: postpone for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] 4 commits: CVE-2026-27821/gpac: eol in bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] Remove notes from two rejected CVEs
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add thunderbird to dsa-needed list
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add thunderbird issues from mfsa2026-17
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27699/node-proxy-agents
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27809/psd-tools
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27837/node-dottie
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27888/pypdf
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for two node-minimatch issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reference upstream issues for gvfs's CVE-2026-28295 and CVE-2026-28296
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] django DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-3172/pgvector via unstable upload
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26103/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26104/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27830/c3p0
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-64999/check-mk
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26932/packetbeat, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add some new kibana issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27141/golang-golang-x-net
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new gvfs issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add information on CVE-2026-2610{3,4}/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for two udisks2 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27809/psd-tools
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27821/gpac
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27837/node-dottie
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new pypdf issue (CVE-2026-27888)
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two node-minimatch issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27942/node-webfont
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] nss DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add two new imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-3184/util-linux
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Associate some NFUs with itp'ed entry
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27959/node-koa, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27800/zed-editor, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27967/zed-editor, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Assign netty for DSA release
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27975/ajenti, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27976/zed-editor
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3172/pgvector
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] new node-proxy-agents issue
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] new udisks issues
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3184/util-linux
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3190/keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Use v922 tag for CVE-2025-4001 corresponding to the first tag with fix
Salvatore Bonaccorso (@carnil)
-
Processing b53b3401fc21926bd89fd01b4ab1d5d28bc818da failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: claim calibre
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] new grafana issue
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] scip is in the archive now
Moritz Muehlenhoff (@jmm)
-
Processing f6c87e78a28e4bbb09d86be2af0860beeb3850f1 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: update note for libstb
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4493-1 for libstb
Abhijith PA (@abhijith)
-
Processing 3b12e7a1fad1c6811a77a735a5ed4007d0159731 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for chromium issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
Processing 8eeb5a7ce6c0547165d5505c8d8754bac3c5b8b9 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] Track fixes for firefox for mfsa2026-13 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
Processing 7de1b4cc7f2d2a2cec9a0e275ce4136000543d39 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] 4 commits: LTS: add nss to dla-needed
Carlos Henrique Lima Melara (@charles)
-
Processing dbf99520239d8bd6f479178448c8c773961249c0 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] LTS: claim python-authlib in dla-needed.txt
Emmanuel Arias (@eamanu)
-
Processing e149c27afd97dd66e7875ee1eb260e3a7eddbeb8 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] new gitlab issues
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Process some more NFUs
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Expand list of pending CVE fixes for freerdp3 via trixie-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new wireshark issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26994
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] firefox-esr DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for freerdp3 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add information on some freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two more freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] suricata spu
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27606/node-rollup
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27628/pypdf
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2781/nss
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add three new vips issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4492-1 for gnutls28
Guilhem Moulin (@guilhem)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for firefox-esr issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27624/coturn
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3121/keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3099/libsoup
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for rust-time via bookworm-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for rust-time via trixie-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Group calibre updates together for easier final review before point release
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-69872/diskcache: follow secteam triage for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-27205/flask: mark bullseye as postponed
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] LTS: add firefox-esr to dla-needed.txt
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] Add three new rust-wasmtime issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26331/yt-dlp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new airflow issues, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new piwigo issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2634/firefox
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update reference for inetuitls issue since changes have not been pushed to codeberg
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27571/nats-server
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3102/libimage-exiftool-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new mastodon issues, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new caddy issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new valkey issues (and mirror to redis and redict)
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26981/openexr
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2026-2913/vips: add NOTE with commit introducing the vulnerability
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27623/valkey
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26198/ormar
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26331/yt-dlp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add firefox-esr to dsa-needed list
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new issues for firefox-es for mfsa2026-15
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new firefox issues from mfsa2026-13
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Process some more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add some more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add first small batch of imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26983/imagemagick
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3054/sogo
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Cleanup one rejected CVE
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] update notes in dla-needed.txt
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-14905/389-ds-base
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2024-58041 as NFU
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-2913/vips: postponed for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: claim erlang
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: add a note to runc
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61146/libsixel
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61147/libde265
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add three new tiff issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4491-1 for glib2.0
Andreas Henriksson (@ah)