[Git][security-tracker-team/security-tracker][master] Track proposed update for ksh via buster-pu

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bc105eb by Salvatore Bonaccorso at 2020-07-14T06:13:45+02:00 Track proposed update for ksh via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] webkit2gtk DSA-4724-1

2020-07-13 Thread Alberto Garcia
Alberto Garcia pushed to branch master at Debian Security Tracker / security-tracker Commits: c2823109 by Alberto Garcia at 2020-07-14T02:27:21+02:00 webkit2gtk DSA-4724-1 - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFU

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e28f964f by Salvatore Bonaccorso at 2020-07-13T22:58:58+02:00 Process NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-20907/python

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b006a1c5 by Salvatore Bonaccorso at 2020-07-13T22:57:50+02:00 Add CVE-2019-20907/python - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2941cd9f by security tracker role at 2020-07-13T20:10:27+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark CVE-2019-14868/ksh as no-dsa for buster

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 15608c67 by Salvatore Bonaccorso at 2020-07-13T21:56:07+02:00 Mark CVE-2019-14868/ksh as no-dsa for buster - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track final relevant version for CVE-2020-12049/dbus via {stretch,buster}-pu

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d96f5a5e by Salvatore Bonaccorso at 2020-07-13T21:50:29+02:00 Track final relevant version for CVE-2020-12049/dbus via {stretch,buster}-pu - - - - - 2 changed files: -

[Git][security-tracker-team/security-tracker][master] Drop amd64-microcode update from next-oldstable-point-update

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 58f6c166 by Salvatore Bonaccorso at 2020-07-13T21:47:49+02:00 Drop amd64-microcode update from next-oldstable-point-update Detail for the reasoning not to include in #954023. - - - - - 1

[Git][security-tracker-team/security-tracker][master] Update fixed version for CVE-2020-15572 via unstable

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fb93215e by Salvatore Bonaccorso at 2020-07-13T21:27:40+02:00 Update fixed version for CVE-2020-15572 via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new (unimportant) tor issue

2020-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e78a5deb by Moritz Muehlenhoff at 2020-07-13T18:25:54+02:00 new (unimportant) tor issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] crawl fixed in sid

2020-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 00f16d32 by Moritz Muehlenhoff at 2020-07-13T18:21:13+02:00 crawl fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] mark cpp-httplib as NFU, chromium bundles it, but not treated as security issue there

2020-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 63fa0a57 by Moritz Muehlenhoff at 2020-07-13T17:54:17+02:00 mark cpp-httplib as NFU, chromium bundles it, but not treated as security issue there - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla-needed.txt: ongoing work for imagemagick

2020-07-13 Thread Markus Koschany
: = data/dla-needed.txt = @@ -65,8 +65,8 @@ golang-github-seccomp-libseccomp-golang (Adrian Bunk) -- gupnp -- -imagemagick - NOTE: 20200622: Ongoing work +imagemagick (Markus Koschany) + NOTE: 20200713: Ongoing work -- jruby NOTE: 20200706: all open

[Git][security-tracker-team/security-tracker][master] dla: update status (nginx, python3.5, rails)

2020-07-13 Thread Sylvain Beucler
: 20200708: #948650 is a stretch point release update for CVE-2019-20372 (bunk) + NOTE: 20200713: update is ready, will publish after point release unless it's delayed too much (Beuc) + NOTE: 20200713: https://www.beuc.net/tmp/debian-lts/nginx/ + NOTE: 20200713: this deb9u5 includes/supersedes

[Git][security-tracker-team/security-tracker][master] CVE-2019-20446/librsvg to be fixed via buster-pu

2020-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 4707644f by Emilio Pozuelo Monfort at 2020-07-13T16:09:08+02:00 CVE-2019-20446/librsvg to be fixed via buster-pu - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] reclaim curl

2020-07-13 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 6eecd0b1 by Thorsten Alteholz at 2020-07-13T15:53:57+02:00 reclaim curl - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-07-13 Thread Holger Levsen
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e3a7d72 by Holger Levsen at 2020-07-13T14:13:06+02:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Holger Levsen hol...@layer-acht.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] chromium regression

2020-07-13 Thread Michael Gilbert
Michael Gilbert pushed to branch master at Debian Security Tracker / security-tracker Commits: e521b177 by Michael Gilbert at 2020-07-13T11:25:14+00:00 chromium regression - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list

[Git][security-tracker-team/security-tracker][master] Revert "Capitalize "stretch" for DLA.template"

2020-07-13 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 783420d2 by Utkarsh Gupta at 2020-07-13T16:08:44+05:30 Revert Capitalize stretch for DLA.template This reverts commit b5c90f552c0edf772fa058364c9f4b0f6b547aec. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Capitalize "stretch" for DLA.template

2020-07-13 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: b5c90f55 by Utkarsh Gupta at 2020-07-13T15:47:23+05:30 Capitalize stretch for DLA.template - - - - - 1 changed file: - doc/DLA.template Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2020-11724/nginx: reference BTS

2020-07-13 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: dc7d3c90 by Sylvain Beucler at 2020-07-13T11:17:19+02:00 CVE-2020-11724/nginx: reference BTS - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cf737077 by Salvatore Bonaccorso at 2020-07-13T10:45:19+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b0fc36cf by security tracker role at 2020-07-13T08:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2020-13645/glib-networking to be fixed via ospu

2020-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: de8eb09e by Emilio Pozuelo Monfort at 2020-07-13T10:01:42+02:00 CVE-2020-13645/glib-networking to be fixed via ospu - - - - - 3 changed files: - data/CVE/list - data/dla-needed.txt -

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-14326/resteasy

2020-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 75f9041a by Salvatore Bonaccorso at 2020-07-13T09:40:33+02:00 Add CVE-2020-14326/resteasy - - - - - 1 changed file: - data/CVE/list Changes: =