[Git][security-tracker-team/security-tracker][master] Add note for qemu

2020-08-31 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b30c173 by Utkarsh Gupta at 2020-09-01T04:29:13+05:30 Add note for qemu - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-8244/node-bl as no-dsa for Stretch

2020-08-31 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: ef3dd8e6 by Utkarsh Gupta at 2020-09-01T04:25:08+05:30 Mark CVE-2020-8244/node-bl as no-dsa for Stretch - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Clarify slirm comment in dla-needed.txt

2020-08-31 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: c9ce0e7f by Brian May at 2020-09-01T08:05:10+10:00 Clarify slirm comment in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-13655/collabtive

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4fb22147 by Salvatore Bonaccorso at 2020-08-31T23:27:53+02:00 Add CVE-2020-13655/collabtive - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-13828/dolibarr

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3cf1ec28 by Salvatore Bonaccorso at 2020-08-31T23:27:20+02:00 Add CVE-2020-13828/dolibarr - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 04909edc by Salvatore Bonaccorso at 2020-08-31T23:26:14+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-25031/checkinstall

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 20900f9f by Salvatore Bonaccorso at 2020-08-31T23:20:36+02:00 Add CVE-2020-25031/checkinstall - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-25032/python-flask-cors

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5e359d85 by Salvatore Bonaccorso at 2020-08-31T23:17:18+02:00 Add CVE-2020-25032/python-flask-cors - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f6a319f4 by Salvatore Bonaccorso at 2020-08-31T23:13:07+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 00e78ba1 by security tracker role at 2020-08-31T20:10:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track proposed fix for CVE-2020-14367/chrony via buster-pu

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25efe282 by Salvatore Bonaccorso at 2020-08-31T21:50:18+02:00 Track proposed fix for CVE-2020-14367/chrony via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed fix for CVE-2020-8244/node-bl via buster-pu

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 11de1a16 by Salvatore Bonaccorso at 2020-08-31T21:49:00+02:00 Track proposed fix for CVE-2020-8244/node-bl via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2020-8244/node-bl fixed via unstable upload

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b171ec8 by Salvatore Bonaccorso at 2020-08-31T21:16:17+02:00 CVE-2020-8244/node-bl fixed via unstable upload - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] xorg-server issues fixed via unstable upload

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ff789401 by Salvatore Bonaccorso at 2020-08-31T20:52:46+02:00 xorg-server issues fixed via unstable upload - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] buster triage

2020-08-31 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dcaf52a8 by Moritz Muehlenhoff at 2020-08-31T19:55:46+02:00 buster triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] asyncpg is uploaded, announcement is left

2020-08-31 Thread Utkarsh Gupta
: 20200815: Minor issue, but easy to fix. (sunweaver) + NOTE: 20200831: has already been uploaded to the archive, just sending out the announcement is left. (utkarsh) -- cacti NOTE: 20200529: A patch need to be cooked up. Upstream patch not fit for jessie version (abhijith) View

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for apache2 update

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 22b08050 by Salvatore Bonaccorso at 2020-08-31T17:01:49+02:00 Reserve DSA number for apache2 update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] gen-DSA: require DEBFULLNAME env variable

2020-08-31 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 3d2fc7af by Emilio Pozuelo Monfort at 2020-08-31T14:09:50+02:00 gen-DSA: require DEBFULLNAME env variable - - - - - 1 changed file: - bin/gen-DSA Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2360-1 for thunderbird

2020-08-31 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 1eb54ef2 by Emilio Pozuelo Monfort at 2020-08-31T14:01:57+02:00 Reserve DLA-2360-1 for thunderbird - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Update hashbang for remaining python2 scripts

2020-08-31 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 44ec51aa by Emilio Pozuelo Monfort at 2020-08-31T12:15:53+02:00 Update hashbang for remaining python2 scripts These are all currently unused, so its a bit hard to test them when porting them

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-8244/node-bl as no-dsa

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ffe4b151 by Salvatore Bonaccorso at 2020-08-31T12:09:07+02:00 Mark CVE-2020-8244/node-bl as no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track proposed fix for CVE-2020-11061/bacula via buster-pu

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 72c8518d by Salvatore Bonaccorso at 2020-08-31T11:43:10+02:00 Track proposed fix for CVE-2020-11061/bacula via buster-pu - - - - - 1 changed file: - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] lts: retake firefox-esr, update notes on ESR 78 progress

2020-08-31 Thread Emilio Pozuelo Monfort
to the CVE. Contacting upstream might be necessary. (sunweaver) -- -firefox-esr +firefox-esr (Emilio) NOTE: 20200720: working on ESR 78 backport. (pochu) - NOTE: 20200810: backported llvm 10, looking into wasi-libc and rustc/cargo (pochu) + NOTE: 20200831: backported llvm 10 and wasi-libc

[Git][security-tracker-team/security-tracker][master] CVE-2020-13941,lucene-solr: Mark as ignored for Stretch and Buster.

2020-08-31 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f0e367a3 by Markus Koschany at 2020-08-31T10:56:03+02:00 CVE-2020-13941,lucene-solr: Mark as ignored for Stretch and Buster. Remove lucene-solr from dla-needed.txt. CVE-2020-13941 is about adding

[Git][security-tracker-team/security-tracker][master] refpolicy n/a

2020-08-31 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d5fdb6d1 by Moritz Muehlenhoff at 2020-08-31T10:52:43+02:00 refpolicy n/a - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: re-claim guacamole-client

2020-08-31 Thread Mike Gabriel
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker Commits: a3d8dbe6 by Mike Gabriel at 2020-08-31T10:31:18+02:00 data/dla-needed.txt: re-claim guacamole-client - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 41b7929a by security tracker role at 2020-08-31T08:10:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: data/CVE/list: Mark CVE-2019-12094/php-horde as ignored for all releases of Debian.

2020-08-31 Thread Mike Gabriel
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker Commits: 51f575ae by Mike Gabriel at 2020-08-31T10:00:12+02:00 data/CVE/list: Mark CVE-2019-12094/php-horde as ignored for all releases of Debian. cf. https://bugs.horde.org/ticket/14926#c4 - - - - -

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-8244/node-bl

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 232bd5ad by Salvatore Bonaccorso at 2020-08-31T09:08:24+02:00 Add Debian bug reference for CVE-2020-8244/node-bl - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-8244/node-bl

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9eaf26f3 by Salvatore Bonaccorso at 2020-08-31T08:49:37+02:00 Add CVE-2020-8244/node-bl - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process two NFUs

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f265ed9 by Salvatore Bonaccorso at 2020-08-31T08:32:44+02:00 Process two NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-08-31 Thread Holger Levsen
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker Commits: ab359f85 by Holger Levsen at 2020-08-31T08:29:19+02:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Holger Levsen hol...@layer-acht.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-14380 as NFU

2020-08-31 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1b8ae13a by Salvatore Bonaccorso at 2020-08-31T08:27:25+02:00 Mark CVE-2020-14380 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =