Messages by Thread
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27837/node-dottie
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27888/pypdf
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for two node-minimatch issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reference upstream issues for gvfs's CVE-2026-28295 and CVE-2026-28296
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-3172/pgvector via unstable upload
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26103/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26104/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27830/c3p0
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-64999/check-mk
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26932/packetbeat, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add some new kibana issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27141/golang-golang-x-net
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new gvfs issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add information on CVE-2026-2610{3,4}/udisks2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for two udisks2 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27809/psd-tools
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27821/gpac
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27837/node-dottie
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new pypdf issue (CVE-2026-27888)
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two node-minimatch issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27942/node-webfont
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] nss DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add two new imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-3184/util-linux
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Associate some NFUs with itp'ed entry
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27959/node-koa, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27800/zed-editor, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27967/zed-editor, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Assign netty for DSA release
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27975/ajenti, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27976/zed-editor
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3172/pgvector
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] new node-proxy-agents issue
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] new udisks issues
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3184/util-linux
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3190/keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Use v922 tag for CVE-2025-4001 corresponding to the first tag with fix
Salvatore Bonaccorso (@carnil)
-
Processing b53b3401fc21926bd89fd01b4ab1d5d28bc818da failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: claim calibre
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] new grafana issue
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] scip is in the archive now
Moritz Muehlenhoff (@jmm)
-
Processing f6c87e78a28e4bbb09d86be2af0860beeb3850f1 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: update note for libstb
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4493-1 for libstb
Abhijith PA (@abhijith)
-
Processing 3b12e7a1fad1c6811a77a735a5ed4007d0159731 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for chromium issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
Processing 8eeb5a7ce6c0547165d5505c8d8754bac3c5b8b9 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] Track fixes for firefox for mfsa2026-13 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
Processing 7de1b4cc7f2d2a2cec9a0e275ce4136000543d39 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] 4 commits: LTS: add nss to dla-needed
Carlos Henrique Lima Melara (@charles)
-
Processing dbf99520239d8bd6f479178448c8c773961249c0 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] LTS: claim python-authlib in dla-needed.txt
Emmanuel Arias (@eamanu)
-
Processing e149c27afd97dd66e7875ee1eb260e3a7eddbeb8 failed
security tracker role
-
[Git][security-tracker-team/security-tracker][master] new gitlab issues
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Process some more NFUs
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Expand list of pending CVE fixes for freerdp3 via trixie-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new wireshark issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26994
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] firefox-esr DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for freerdp3 issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add information on some freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two more freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new freerdp3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] suricata spu
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27606/node-rollup
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27628/pypdf
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2781/nss
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add three new vips issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4492-1 for gnutls28
Guilhem Moulin (@guilhem)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for firefox-esr issues fixed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27624/coturn
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3121/keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3099/libsoup
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for rust-time via bookworm-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for rust-time via trixie-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Group calibre updates together for easier final review before point release
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-69872/diskcache: follow secteam triage for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-27205/flask: mark bullseye as postponed
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] LTS: add firefox-esr to dla-needed.txt
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] Add three new rust-wasmtime issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-26331/yt-dlp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new airflow issues, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new piwigo issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2634/firefox
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update reference for inetuitls issue since changes have not been pushed to codeberg
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27571/nats-server
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3102/libimage-exiftool-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new mastodon issues, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new caddy issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new valkey issues (and mirror to redis and redict)
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26981/openexr
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2026-2913/vips: add NOTE with commit introducing the vulnerability
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27623/valkey
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26198/ormar
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26331/yt-dlp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add firefox-esr to dsa-needed list
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new issues for firefox-es for mfsa2026-15
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new firefox issues from mfsa2026-13
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Process some more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add some more imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add first small batch of imagemagick issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26983/imagemagick
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3054/sogo
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Cleanup one rejected CVE
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] update notes in dla-needed.txt
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-14905/389-ds-base
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2024-58041 as NFU
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-2913/vips: postponed for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: claim erlang
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: add a note to runc
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61146/libsixel
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61147/libde265
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add three new tiff issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4491-1 for glib2.0
Andreas Henriksson (@ah)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4490-1 for openssl
Andreas Henriksson (@ah)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2588/libcrypt-nacl-sodium-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] nova bullseye triagging
@rouca
-
[Git][security-tracker-team/security-tracker][master] Post pone node-minimatch for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] calibre spu/ospu
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] pypdf2 triagging for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add two uTLS issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add calibre to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add node-bn.js to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add erlang to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] 2 commits: claim libvpx
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: take vim
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: update NOTEs on orthanc
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: take orthanc
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27026
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add note on CVE-2026-27026 for relation with fix for CVE-2025-55197
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for modsecurity-crs via bookworm-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-31344/giflib: use the upstream commit reference that fixes the issue
Santiago R.R. (@santiago)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug references for two pypdf issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2492/tensorflow
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-24122/cosign
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-21620/erlang
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4488-1 for modsecurity-crs
Tobias Frost (@tobi)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2889/ccextractor
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fix via unstable for CVE-2026-2100/p11-kit
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version via experimental for CVE-2026-24882/gnupg2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixes for two xen issues addressed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2597/libcrypt-sysrandom-xs-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26958/golang-filippo-edwards25519
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2739/node-bn.js
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27168/sail
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27205/flask
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2653
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-7425/bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Fix a typo in DLA-4485-1
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2019-25355/gsoap
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-69725/golang-github-go-chi-chi
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug references for gimp issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2044/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-0797/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add commit references for gimp issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-0797/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update triage for CVE-2025-7425/libxslt
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2708/libsoup3
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add gimp to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] CVE-2022-38072/bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26996/node-minimatch
Salvatore Bonaccorso (@carnil)