[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 776a1b45 by Salvatore Bonaccorso at 2024-11-08T21:15:27+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4db2531d by security tracker role at 2024-11-08T20:12:04+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fix for guix in bookworm until CVE assigned

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ead51b3b by Salvatore Bonaccorso at 2024-11-08T21:02:41+01:00 Track fix for guix in bookworm until CVE assigned - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Track fixes for symfony issues via unstable

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 36a9b0eb by Salvatore Bonaccorso at 2024-11-08T11:28:57+01:00 Track fixes for symfony issues via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Track two CVEs as pixed by php-twig upload

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 69cc06f8 by Salvatore Bonaccorso at 2024-11-08T10:45:29+01:00 Track two CVEs as pixed by php-twig upload - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-10963 tracking

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e494810 by Salvatore Bonaccorso at 2024-11-08T10:10:13+01:00 Add Debian bug reference for CVE-2024-10963 tracking - - - - - 1 changed file: - data/CVE/list Changes

Bug#1087019: pam: CVE-2024-10963

2024-11-08 Thread Salvatore Bonaccorso
Source: pam Version: 1.5.3-7 Severity: important Tags: security upstream Forwarded: https://github.com/linux-pam/linux-pam/issues/834 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for pam. CVE-2024-10963[0]: | A vulnerability was found in pa

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-47072/libxstream-java

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 238e2d04 by Salvatore Bonaccorso at 2024-11-08T09:53:14+01:00 Add CVE-2024-47072/libxstream-java - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Proces some NFUs

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b739c116 by Salvatore Bonaccorso at 2024-11-08T09:23:57+01:00 Proces some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 44d32c39 by security tracker role at 2024-11-08T08:12:41+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2024-49888/linux

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b203d1d7 by Salvatore Bonaccorso at 2024-11-08T08:34:50+01:00 Update status for CVE-2024-49888/linux - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5e170ed4 by Salvatore Bonaccorso at 2024-11-08T07:28:25+01:00 Merge Linux CVEs from kernel-sec - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-28168 via unstable

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 577fcb73 by Salvatore Bonaccorso at 2024-11-08T06:23:00+01:00 Track fixed version for CVE-2024-28168 via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-10963/pam

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1f59f497 by Salvatore Bonaccorso at 2024-11-07T21:42:01+01:00 Add CVE-2024-10963/pam - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Add new moodle issues

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bde06dc by Salvatore Bonaccorso at 2024-11-07T21:31:55+01:00 Add new moodle issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1bc54873 by Salvatore Bonaccorso at 2024-11-07T21:31:25+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 128bd1a5 by security tracker role at 2024-11-07T20:12:45+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-45409/ruby-saml via unstable

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f66520d2 by Salvatore Bonaccorso at 2024-11-07T20:50:55+01:00 Track fixed version for CVE-2024-45409/ruby-saml via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-0126/nvidia-graphics-drivers via unstable

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f832dbcf by Salvatore Bonaccorso at 2024-11-07T20:46:47+01:00 Track fixed version for CVE-2024-0126/nvidia-graphics-drivers via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-50340/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 54f8f55b by Salvatore Bonaccorso at 2024-11-07T20:39:16+01:00 Add CVE-2024-50340/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-50341/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 11cfe7ac by Salvatore Bonaccorso at 2024-11-07T20:30:17+01:00 Add CVE-2024-50341/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-8775 via unstable

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8b871adc by Salvatore Bonaccorso at 2024-11-07T20:25:17+01:00 Track fixed version for CVE-2024-8775 via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-50342/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9979f194 by Salvatore Bonaccorso at 2024-11-07T20:20:31+01:00 Add CVE-2024-50342/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-50343/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1e49e537 by Salvatore Bonaccorso at 2024-11-07T20:18:26+01:00 Add CVE-2024-50343/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-50345/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5402b94c by Salvatore Bonaccorso at 2024-11-07T20:12:00+01:00 Add CVE-2024-50345/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-51736/symfony

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2684ef7b by Salvatore Bonaccorso at 2024-11-07T18:13:53+01:00 Add CVE-2024-51736/symfony - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 47adaeea by Salvatore Bonaccorso at 2024-11-07T12:17:31+01:00 Merge Linux CVEs from kernel-sec - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-07 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c5114c66 by security tracker role at 2024-11-07T08:12:05+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-10941/firefox

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b516c3f by Salvatore Bonaccorso at 2024-11-07T07:50:30+01:00 Add CVE-2024-10941/firefox - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-48936/slurm-wlm via unstable

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: db4096f6 by Salvatore Bonaccorso at 2024-11-07T07:34:32+01:00 Track fixed version for CVE-2024-48936/slurm-wlm via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for php-twig issues

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dc686374 by Salvatore Bonaccorso at 2024-11-07T07:32:29+01:00 Add Debian bug reference for php-twig issues - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add Debian bug refernece for CVE-2024-9902/ansible-core

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 044e3d54 by Salvatore Bonaccorso at 2024-11-07T07:31:50+01:00 Add Debian bug refernece for CVE-2024-9902/ansible-core - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086883: ansible-core: CVE-2024-9902

2024-11-06 Thread Salvatore Bonaccorso
Source: ansible-core Version: 2.17.5-4 Severity: important Tags: security upstream Forwarded: https://github.com/ansible/ansible/issues/83955 X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for ansible-core. CVE-2024-9902[0]: | A flaw was foun

Bug#1086884: php-twig: CVE-2024-51754 CVE-2024-51755

2024-11-06 Thread Salvatore Bonaccorso
Source: php-twig Version: 3.14.0-4 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerabilities were published for php-twig. CVE-2024-51754[0]: | Twig is a template language for PHP. In a sandbox, an attacker can | call `__t

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0be368fb by Salvatore Bonaccorso at 2024-11-06T22:27:56+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-51988/rabbitmq-server

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 145d208e by Salvatore Bonaccorso at 2024-11-06T22:25:47+01:00 Add CVE-2024-51988/rabbitmq-server - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add two new php-twig issues

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d7233913 by Salvatore Bonaccorso at 2024-11-06T22:16:49+01:00 Add two new php-twig issues - - - - - 1 changed file: - data/CVE/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-9902/ansible

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 30361095 by Salvatore Bonaccorso at 2024-11-06T22:12:50+01:00 Add CVE-2024-9902/ansible - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f29d05cc by Salvatore Bonaccorso at 2024-11-06T22:02:53+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process one NFU

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: de8d9514 by Salvatore Bonaccorso at 2024-11-06T21:49:50+01:00 Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 72aa6f0f by security tracker role at 2024-11-06T20:12:40+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-9681/curl

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 555d83c3 by Salvatore Bonaccorso at 2024-11-06T11:07:32+01:00 Add Debian bug reference for CVE-2024-9681/curl - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086804: curl: CVE-2024-9681

2024-11-06 Thread Salvatore Bonaccorso
Source: curl Version: 8.10.1-2 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Control: found -1 7.88.1-10+deb12u8 Control: found -1 7.88.1-10 Hi, The following vulnerability was published for curl. CVE-2024-9681[0]: | When curl is asked to use

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ee7579e by Salvatore Bonaccorso at 2024-11-06T09:29:19+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-9681/curl

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a5d4b03 by Salvatore Bonaccorso at 2024-11-06T09:20:09+01:00 Add CVE-2024-9681/curl - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-06 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fbc506ea by security tracker role at 2024-11-06T08:12:31+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2024-51744

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a0abe0a by Salvatore Bonaccorso at 2024-11-05T22:40:43+01:00 Add Debian bug reference for CVE-2024-51744 - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086792: golang-github-golang-jwt-jwt: CVE-2024-51744

2024-11-05 Thread Salvatore Bonaccorso
Source: golang-github-golang-jwt-jwt Version: 5.0.0+really4.5.0-2 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for golang-github-golang-jwt-jwt. CVE-2024-51744[0]: | golang-jwt is a Go implementat

Bug#1069301: linux-image-6.1.0-20-amd64: bluetooth causes kernel BUG - list_del corruption, (address)->prev is LIST_POISON2

2024-11-05 Thread Salvatore Bonaccorso
hi, On Fri, Apr 19, 2024 at 05:37:41PM +0200, Jeremy Lainé wrote: > Package: src:linux > Version: 6.1.85-1 > Severity: important > X-Debbugs-Cc: jeremy.la...@m4x.org > > Dear Maintainer, > > After upgrading from linux-image-6.1.0-18-amd64 to > linux-image-6.1.0-20-amd64, bluetooth no longer work

[Git][security-tracker-team/security-tracker][master] Add two new issues in octoprint, itp'ed

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 142bb764 by Salvatore Bonaccorso at 2024-11-05T21:26:30+01:00 Add two new issues in octoprint, itp'ed - - - - - 1 changed file: - data/CVE/list Ch

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bda53c11 by Salvatore Bonaccorso at 2024-11-05T21:25:37+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d9974930 by security tracker role at 2024-11-05T20:12:09+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7904c19f by Salvatore Bonaccorso at 2024-11-05T20:13:32+01:00 Merge Linux CVEs from kernel-sec - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Add CVE-2023-52920/linux

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fb90b972 by Salvatore Bonaccorso at 2024-11-05T14:23:16+01:00 Add CVE-2023-52920/linux - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] Progess some NFUs

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d78d954 by Salvatore Bonaccorso at 2024-11-05T09:38:30+01:00 Progess some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-05 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eaa24295 by security tracker role at 2024-11-05T08:12:31+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-51744/golang-github-golang-jwt-jwt

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 43c38343 by Salvatore Bonaccorso at 2024-11-05T07:35:43+01:00 Add CVE-2024-51744/golang-github-golang-jwt-jwt - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 495ecaff by Salvatore Bonaccorso at 2024-11-05T07:19:12+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Bug#1086741: RM: criu [armhf] -- NBS; Not built anymore for armhf

2024-11-04 Thread Salvatore Bonaccorso
Package: ftp.debian.org Severity: normal X-Debbugs-Cc: c...@packages.debian.org, car...@debian.org Control: affects -1 + src:criu User: ftp.debian@packages.debian.org Usertags: remove Hi src:criu does not built anymore binary packages for armhf. There will be a leftover from previous versions

Bug#918229: criu: FTBFS building for armhf on arm64

2024-11-04 Thread Salvatore Bonaccorso
Hi While I do know this is not the solution to this, at this point I'm considering just dropping building criu for 32bit architectures, and so armhf to go away. Steve, while I do realize, this might make you unhappy I think its the way of less burden in maintenance. Regards, Salvatore

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-50067 via unstable

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c528eeac by Salvatore Bonaccorso at 2024-11-04T23:03:35+01:00 Track fixed version for CVE-2024-50067 via unstable - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086676: Not installable with python3-pycodestyle/sid

2024-11-04 Thread Salvatore Bonaccorso
Hi, On Sun, Nov 03, 2024 at 10:47:58PM +0500, Andrey Rakhmatullin wrote: > Package: python3-flake8 > Version: 7.1.1-1 > Severity: serious > > pycodestyle 2.12.1-1 was just uploaded, making python3-flake8 not installable. And since upstream commit https://github.com/PyCQA/flake8/commit/defd315175

Bug#1086676: Not installable with python3-pycodestyle/sid

2024-11-04 Thread Salvatore Bonaccorso
Hi, On Sun, Nov 03, 2024 at 10:47:58PM +0500, Andrey Rakhmatullin wrote: > Package: python3-flake8 > Version: 7.1.1-1 > Severity: serious > > pycodestyle 2.12.1-1 was just uploaded, making python3-flake8 not installable. And since upstream commit https://github.com/PyCQA/flake8/commit/defd315175

Uploading linux (6.11.6-1)

2024-11-04 Thread Salvatore Bonaccorso
Hi I would like to upload linux version 6.11.6-1 to unstable. It imports one stable series version on top, 6.11.6. No other packaging changes are included. Regards, Salvatore signature.asc Description: PGP signature

Uploading linux (6.11.6-1)

2024-11-04 Thread Salvatore Bonaccorso
Hi I would like to upload linux version 6.11.6-1 to unstable. It imports one stable series version on top, 6.11.6. No other packaging changes are included. Regards, Salvatore signature.asc Description: PGP signature

[Git][security-tracker-team/security-tracker][master] Process some more NFUs

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f638078c by Salvatore Bonaccorso at 2024-11-04T21:51:51+01:00 Process some more NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] 2 commits: Process NFUs

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e389341 by Salvatore Bonaccorso at 2024-11-04T21:19:20+01:00 Process NFUs - - - - - b90b7641 by Salvatore Bonaccorso at 2024-11-04T21:26:58+01:00 Process some NFUs - - - - - 1 changed file

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 450caa33 by security tracker role at 2024-11-04T20:12:40+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark node-matrix-js-sdk as removed from unstable

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 97b03a4d by Salvatore Bonaccorso at 2024-11-04T20:35:19+01:00 Mark node-matrix-js-sdk as removed from unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Mark python-html-sanitizer as removed from unstable

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6a99e965 by Salvatore Bonaccorso at 2024-11-04T20:34:10+01:00 Mark python-html-sanitizer as removed from unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Mark clickhouse as removed from unstable

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9fdf5dcc by Salvatore Bonaccorso at 2024-11-04T20:32:35+01:00 Mark clickhouse as removed from unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Mark node-mermaid as removed from unstable

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d62f490 by Salvatore Bonaccorso at 2024-11-04T20:27:45+01:00 Mark node-mermaid as removed from unstable - - - - - 1 changed file: - data/CVE/list Changes

Re: [SECURITY] [DLA 3941-1] texlive-bin security update

2024-11-04 Thread Salvatore Bonaccorso
Hi Bastien On Wed, Oct 30, 2024 at 08:56:49AM +, ro...@debian.org wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA512 > > - - > Debian LTS Advisory DLA-3941-1debian-lts@lists.debian.org > https://ww

[Git][security-tracker-team/security-tracker][master] Add additonal reference CVE-2023-32668 (hilighting some followup work required)

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 329c50c9 by Salvatore Bonaccorso at 2024-11-04T17:08:37+01:00 Add additonal reference CVE-2023-32668 (hilighting some followup work required) - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-04 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 121c05a4 by security tracker role at 2024-11-04T08:12:39+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Merge kernel-sec updates for ignored CVEs in suite

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 919225a4 by Salvatore Bonaccorso at 2024-11-04T05:49:15+01:00 Merge kernel-sec updates for ignored CVEs in suite - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-20696/libarchive

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d47883e0 by Salvatore Bonaccorso at 2024-11-04T05:46:39+01:00 Track fixed version for CVE-2024-20696/libarchive - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Process some new NFUs

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 796dfe22 by Salvatore Bonaccorso at 2024-11-03T21:15:01+01:00 Process some new NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 84ea7961 by security tracker role at 2024-11-03T20:12:10+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track proposed update for zfs-linux via bookworm-pu

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bc350a6 by Salvatore Bonaccorso at 2024-11-03T18:59:18+01:00 Track proposed update for zfs-linux via bookworm-pu - - - - - 1 changed file: - data/next-point-update.txt Changes

[Git][security-tracker-team/security-tracker][master] Add new guix issue

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 74e9f835 by Salvatore Bonaccorso at 2024-11-03T17:23:48+01:00 Add new guix issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bde30142 by Salvatore Bonaccorso at 2024-11-03T17:13:36+01:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2024-9979/rust-pyo3

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e40d18d7 by Salvatore Bonaccorso at 2024-11-03T15:16:48+01:00 Track fixed version for CVE-2024-9979/rust-pyo3 - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086638: linux-image-6.11.5: usbguard-daemon invalid opcode: 0000, usb's not usable

2024-11-03 Thread Salvatore Bonaccorso
On Sat, Nov 02, 2024 at 03:10:00PM -0300, matias wrote: > Package: src:linux > Version: 6.11.5-1 > Severity: critical > Justification: breaks unrelated software > X-Debbugs-Cc: fritzmat...@gmail.com > > Dear Maintainer, > > *** Reporter, please consider answering these questions, where appropriat

Bug#1086638: linux-image-6.11.5: usbguard-daemon invalid opcode: 0000, usb's not usable

2024-11-03 Thread Salvatore Bonaccorso
On Sat, Nov 02, 2024 at 03:10:00PM -0300, matias wrote: > Package: src:linux > Version: 6.11.5-1 > Severity: critical > Justification: breaks unrelated software > X-Debbugs-Cc: fritzmat...@gmail.com > > Dear Maintainer, > > *** Reporter, please consider answering these questions, where appropriat

[Git][security-tracker-team/security-tracker][master] Track fixed version for chromium issues uploaded via unstable

2024-11-03 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 776345ea by Salvatore Bonaccorso at 2024-11-03T08:37:09+01:00 Track fixed version for chromium issues uploaded via unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2024-37407/libarchive

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c56538b by Salvatore Bonaccorso at 2024-11-02T21:19:22+01:00 Update status for CVE-2024-37407/libarchive Issue was introduced in 3.7.3 upstream and addressed in 3.7.4, which means that no

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 17876c71 by Salvatore Bonaccorso at 2024-11-02T21:25:22+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Bug#1072855: libarchive: CVE-2024-37407

2024-11-02 Thread Salvatore Bonaccorso
Control: notfound -1 3.7.2-2.1 Control: notfixed -1 3.7.4-1 Control: fixed -1 Hi Actually if I'm not compltely wrong then the issue was only introduced in 3.7.3 upstream and fixed in 3.7.4, that means no Debian released version was ever affected by this issue. Regards, Salvatore

[Git][security-tracker-team/security-tracker][master] automatic update

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b8db8e9 by security tracker role at 2024-11-02T20:12:38+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove tailing whitespaces in notes

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c42bf56 by Salvatore Bonaccorso at 2024-11-02T20:30:28+01:00 Remove tailing whitespaces in notes - - - - - 1 changed file: - data/CVE/list Changes

Bug#1086633: criu: Please update to upstream version 3.19

2024-11-02 Thread Salvatore Bonaccorso
Hi Reinhard, On Sat, Nov 02, 2024 at 12:44:37PM -0400, Reinhard Tartler wrote: > Package: criu > Version: 3.17.1-3 > Severity: normal > > Please update to upstream version 3.19 > > See release notes: > > https://criu.org/Download/criu/3.18 > https://criu.org/Download/criu/3.19 > > We had to up

Bug#1086632: bookworm-pu: package apr/1.7.2-3+deb12u1

2024-11-02 Thread Salvatore Bonaccorso
-1.7.2/debian/changelog 2024-10-31 21:08:12.0 +0100 @@ -1,3 +1,11 @@ +apr (1.7.2-3+deb12u1) bookworm; urgency=medium + + * Non-maintainer upload. + * Use 0600 perms for named shared mem consistently (CVE-2023-49582) +(Closes: #1080375) + + -- Salvatore Bonaccorso Thu, 31 Oct 2024 21:08

Bug#1086632: bookworm-pu: package apr/1.7.2-3+deb12u1

2024-11-02 Thread Salvatore Bonaccorso
-1.7.2/debian/changelog 2024-10-31 21:08:12.0 +0100 @@ -1,3 +1,11 @@ +apr (1.7.2-3+deb12u1) bookworm; urgency=medium + + * Non-maintainer upload. + * Use 0600 perms for named shared mem consistently (CVE-2023-49582) +(Closes: #1080375) + + -- Salvatore Bonaccorso Thu, 31 Oct 2024 21:08

Bug#1086632: bookworm-pu: package apr/1.7.2-3+deb12u1

2024-11-02 Thread Salvatore Bonaccorso
-1.7.2/debian/changelog 2024-10-31 21:08:12.0 +0100 @@ -1,3 +1,11 @@ +apr (1.7.2-3+deb12u1) bookworm; urgency=medium + + * Non-maintainer upload. + * Use 0600 perms for named shared mem consistently (CVE-2023-49582) +(Closes: #1080375) + + -- Salvatore Bonaccorso Thu, 31 Oct 2024 21:08

Bug#1086229: linux-image-6.1.0-26-amd64: System don't boot the GUI

2024-11-02 Thread Salvatore Bonaccorso
Control: tags -1 + moreinfo Hi, On Tue, Oct 29, 2024 at 02:58:47PM +0100, Yossef Enkaoua wrote: > Yes, of course. > > I have no result for "dpkg -l | grep dkms" Thanks a lot. Now, we discussed your issue at the last Debian kernel team meeting, and we would like to know the following, as the pi

Bug#1086229: linux-image-6.1.0-26-amd64: System don't boot the GUI

2024-11-02 Thread Salvatore Bonaccorso
Control: tags -1 + moreinfo Hi, On Tue, Oct 29, 2024 at 02:58:47PM +0100, Yossef Enkaoua wrote: > Yes, of course. > > I have no result for "dpkg -l | grep dkms" Thanks a lot. Now, we discussed your issue at the last Debian kernel team meeting, and we would like to know the following, as the pi

[Git][security-tracker-team/security-tracker][master] Track ansible issues which were included in last point release

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b891cdd6 by Salvatore Bonaccorso at 2024-11-02T09:48:30+01:00 Track ansible issues which were included in last point release Thanks: Bastien Roucariès - - - - - 1 changed file: - data/CVE

[Git][security-tracker-team/security-tracker][master] Add CVE-2024-51774/qbittorrent

2024-11-02 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dbd8faf9 by Salvatore Bonaccorso at 2024-11-02T09:43:36+01:00 Add CVE-2024-51774/qbittorrent - - - - - 1 changed file: - data/CVE/list Changes: = data

Bug#1086611: bookworm-pu: package node-dompurify/2.4.1+dfsg+~2.4.0-2+deb12u1

2024-11-02 Thread Salvatore Bonaccorso
On Sat, Nov 02, 2024 at 07:20:27AM +0100, Yadd wrote: > Package: release.debian.org > Severity: normal > Tags: bookworm > X-Debbugs-Cc: node-dompur...@packages.debian.org, y...@debian.org > Control: affects -1 + src:node-dompurify > User: release.debian@packages.debian.org > Usertags: pu > > [

  1   2   3   4   5   6   7   8   9   10   >