Messages by Thread
-
[Git][security-tracker-team/security-tracker][master] update notes in dla-needed.txt
Abhijith PA (@abhijith)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-14905/389-ds-base
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2024-58041 as NFU
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-2913/vips: postponed for bullseye
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: claim erlang
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: add a note to runc
Lucas Kanashiro (@kanashiro)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61146/libsixel
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61147/libde265
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add three new tiff issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4491-1 for glib2.0
Andreas Henriksson (@ah)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4490-1 for openssl
Andreas Henriksson (@ah)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2588/libcrypt-nacl-sodium-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] nova bullseye triagging
@rouca
-
[Git][security-tracker-team/security-tracker][master] Post pone node-minimatch for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] calibre spu/ospu
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] pypdf2 triagging for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add two uTLS issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add calibre to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add node-bn.js to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add erlang to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] 2 commits: claim libvpx
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: take vim
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: update NOTEs on orthanc
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: take orthanc
Paride Legovini (@paride)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27026
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add note on CVE-2026-27026 for relation with fix for CVE-2025-55197
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track proposed update for modsecurity-crs via bookworm-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-31344/giflib: use the upstream commit reference that fixes the issue
Santiago R.R. (@santiago)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug references for two pypdf issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2492/tensorflow
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-24122/cosign
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-21620/erlang
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4488-1 for modsecurity-crs
Tobias Frost (@tobi)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2889/ccextractor
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2903/re2c
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2913/vips
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fix via unstable for CVE-2026-2100/p11-kit
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version via experimental for CVE-2026-24882/gnupg2
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixes for two xen issues addressed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2597/libcrypt-sysrandom-xs-perl
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26958/golang-filippo-edwards25519
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2739/node-bn.js
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27168/sail
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27205/flask
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2653
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2025-7425/bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Fix a typo in DLA-4485-1
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2019-25355/gsoap
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-69725/golang-github-go-chi-chi
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug references for gimp issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-2044/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-0797/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add commit references for gimp issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-0797/gimp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update triage for CVE-2025-7425/libxslt
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2708/libsoup3
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add gimp to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] CVE-2022-38072/bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-26996/node-minimatch
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-26960: Sort commits
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-24122/cosign
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-21620/erlang
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new gimp issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4487-1 for gegl
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-25896/node-webfont
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new moodle issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new pypdf issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27113/liquidprompt
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27168/sail
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27199/python-werkzeug
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27205/flask
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Associate CVE-2023-26920 with node-webfont
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2492/tensorflow
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2739/node-bn.js
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-27470/zoneminder
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2861/foswiki, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4486-1 for nova
Carlos Henrique Lima Melara (@charles)
-
[Git][security-tracker-team/security-tracker][master] Add note about DLA 4485-1 to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] DLA-4485-1 ca-certificates - CA certificates updates
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add asterisk to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add spip to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2026-270[45] bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Postpone CVE-2025-14009 for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] TEMP-0000000-DBCA0A triagging
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add clarifying note for inetutils issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Update CVE-2022-38072 for admesh
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-2653/bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26996/node-minimatch
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Mark CVE-2026-26958 as no-dsa for trixie and bookworm
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for two calibre issues addressed via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] pillow DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] chromium dsa
Andres Salomon (@dilinger)
-
[Git][security-tracker-team/security-tracker][master] claim gegl
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] Add two new calibre issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26312/stalwart, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26958/golang-filippo-edwards25519
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26960/node-tar
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26963/cilium, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26967/pjproject
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new issues for golang-github-go-ethereum
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26980/ghost, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2069/llama.cpp
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2025-69872/diskcache
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for nltk issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2025-61982/openfoam
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug references for ruby-rack issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-27206/php-zumba-json-serializer
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2243/qemu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2708/libsoup
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-27206/php-zumba-json-serializer assigned
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for libvpx issue fixed via unstable upload
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add some new "old" spip issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-25766/golang-github-labstack-echo*
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new issues in jspdf, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26189/trivy, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26200/hdf5
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26203/pjproject
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-26278/node-webfont
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DSA number for nova update
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DSA number for inetutils update
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2243/qemu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two more spip issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new spip issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] libvpx DSA
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Reserve DSA number for gegl update
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4484-1 for python-django
Chris Lamb (@lamby)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: Add upstream tag references for commits for CVE-2021-2031{2, 3}/imagemagick
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] new rust-pyo3 issue
Moritz Muehlenhoff (@jmm)
-
[Git][security-tracker-team/security-tracker][master] Replace nova advisory without CVE confusion
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Take inetutils and nova for DSA release
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add temporary entry for php-zumba-json-serializer issue
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-2625/rust-rpm-sequoia
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add orthanc to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] dla-needed add universal-ctags
@rouca
-
[Git][security-tracker-team/security-tracker][master] claim evolution-data-server
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-14009/nltk
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-15581/orthanc
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-24126/weblate, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new openbabel issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2733/keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Remove the vluldb references
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for new chromium issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add links to two llama.cpp issues.
Petter Reinholdtsen (@pere)
-
[Git][security-tracker-team/security-tracker][master] Add chromium to dsa-needed list
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new chromium issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2681/golang-github-supranational-blst, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Adjust one pending CVE for erlang via trixie-pu
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed via experimental for dcmtk issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] dla-needed: update NOTEs for gdcm
Emmanuel Arias (@eamanu)
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-25547/node-brace-expansion
@rouca
-
[Git][security-tracker-team/security-tracker][master] Add evolution-data-server to dla-needed
@rouca
-
[Git][security-tracker-team/security-tracker][master] CVE-2026-27171/zlib [bullseye]
@rouca
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-22703/cosign via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-61982/openfoam
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-65791/zoneminder
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: auto-nfu: Add another product covered by the NVIDIA CNA rule
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Adjust intentation for CVE entry
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Adjust note for CVE-2025-25292
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2025-66568 and reference relation to CVE-2025-25293
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Fix entry for CVE-2025-53106/graylog2, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add new graylog2 issues, itp'ed
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new ruby-rack issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add two new squirrel3 issues
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Add CVE-2026-2653/admesh
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] 2 commits: angular.js triagge for bullseye
@rouca
-
[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-14550 in python-django for bullseye LTS.
Chris Lamb (@lamby)
-
[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-66567
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-2604/evolution-data-server via unstable
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Reserve DLA-4483-1 for gimp
Thorsten Alteholz (@alteholz)
-
[Git][security-tracker-team/security-tracker][master] Reserve DSA number for linux update
Salvatore Bonaccorso (@carnil)
-
[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)