Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker
Commits: 08abd39d by Bastien Roucariès at 2024-01-30T12:42:03+00:00 Reserve DLA-3725-1 for postfix - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes: ===================================== data/CVE/list ===================================== @@ -6418,7 +6418,6 @@ CVE-2023-51764 (Postfix through 3.8.5 allows SMTP smuggling unless configured wi - postfix 3.8.4-1 (bug #1059230) [bookworm] - postfix <no-dsa> (Minor issue; mitigations exist) [bullseye] - postfix <no-dsa> (Minor issue; mitigations exist) - [buster] - postfix <no-dsa> (Minor issue; mitigations exist) NOTE: https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/ NOTE: https://www.openwall.com/lists/oss-security/2023/12/21/6 NOTE: https://www.postfix.org/smtp-smuggling.html ===================================== data/DLA/list ===================================== @@ -1,3 +1,6 @@ +[30 Jan 2024] DLA-3725-1 postfix - security update + {CVE-2023-51764} + [buster] - postfix 3.4.23-0+deb10u2 [29 Jan 2024] DLA-3724-1 pillow - security update {CVE-2023-50447} [buster] - pillow 5.4.1-2+deb10u4 ===================================== data/dla-needed.txt ===================================== @@ -178,9 +178,6 @@ nvidia-cuda-toolkit openjdk-11 (Emilio) NOTE: 20240121: Added by Front-Desk (apo) -- -postfix (rouca) - NOTE: 20240129: Added by Front-Desk (ta) --- putty (santiago) NOTE: 20231224: Added by Front-Desk (ta) NOTE: 20230104: massive code change against bullseye. May be better to backport bullseye (rouca) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/08abd39d647ebcc5564e4f701b7f60fb28753a99 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/08abd39d647ebcc5564e4f701b7f60fb28753a99 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits