[Git][security-tracker-team/security-tracker][master] Update information on CVE-2020-27748/xdg-utils

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c5c3ff3a by Salvatore Bonaccorso at 2020-11-21T08:55:43+01:00 Update information on CVE-2020-27748/xdg-utils - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-27748//xdg-utils

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 742833e0 by Salvatore Bonaccorso at 2020-11-21T08:54:30+01:00 Add CVE-2020-27748//xdg-utils - - - - - 1 changed file: - data/CVE/list Changes: = data/C

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-19667/imagemagick

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c0d81990 by Salvatore Bonaccorso at 2020-11-21T08:48:07+01:00 Add CVE-2020-19667/imagemagick - - - - - 1 changed file: - data/CVE/list Changes: = data/

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2020-20740 for buster

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9ccb767d by Salvatore Bonaccorso at 2020-11-21T08:37:30+01:00 Update status for CVE-2020-20740 for buster - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-28928/musl as no-dsa

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c05b111a by Salvatore Bonaccorso at 2020-11-21T08:33:51+01:00 Mark CVE-2020-28928/musl as no-dsa - - - - - 1 changed file: - data/CVE/list Changes: = d

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-28928/musl

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7bf66b80 by Salvatore Bonaccorso at 2020-11-21T08:32:41+01:00 Add Debian bug reference for CVE-2020-28928/musl - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2379-3 for mediawiki

2020-11-20 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: e8d8f3de by Roberto C. Sánchez at 2020-11-21T00:13:57-05:00 Reserve DLA-2379-3 for mediawiki - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: ==

[Git][security-tracker-team/security-tracker][master] Take musl

2020-11-20 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 31dbe65f by Utkarsh Gupta at 2020-11-21T10:42:26+05:30 Take musl - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt ==

[Git][security-tracker-team/security-tracker][master] 4 commits: LTS: remove from CVE-2020-26217, as it will be investigated and fixed

2020-11-20 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 1cf942cc by Roberto C. Sánchez at 2020-11-20T23:39:57-05:00 LTS: remove from CVE-2020-26217, as it will be investigated and fixed - - - - - 7d9763dc by Roberto C. Sánchez at 2020-11-20T

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-28928/musl

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e83c314a by Salvatore Bonaccorso at 2020-11-20T23:34:15+01:00 Add CVE-2020-28928/musl - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/lis

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2020-25269/inspircd via unstable

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fa155d38 by Salvatore Bonaccorso at 2020-11-20T22:56:04+01:00 Add fixed version for CVE-2020-25269/inspircd via unstable - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] Update information on older CVE-2013-7484

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f7adfc60 by Salvatore Bonaccorso at 2020-11-20T22:36:25+01:00 Update information on older CVE-2013-7484 According to the upstream information was first fixed in 5.0 but it got not backported to

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-20739/vips

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6950900e by Salvatore Bonaccorso at 2020-11-20T22:05:09+01:00 Add CVE-2020-20739/vips - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/lis

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-20740/pdfresurrect

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e3e64213 by Salvatore Bonaccorso at 2020-11-20T22:04:36+01:00 Add CVE-2020-20740/pdfresurrect - - - - - 1 changed file: - data/CVE/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 610182f2 by Salvatore Bonaccorso at 2020-11-20T22:01:35+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3cdeb5d3 by Salvatore Bonaccorso at 2020-11-20T21:30:12+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2020-28974/linux via unstable

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fd914833 by Salvatore Bonaccorso at 2020-11-20T21:21:07+01:00 Track fixed version for CVE-2020-28974/linux via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2020-28974/linux assigned

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c98210b by Salvatore Bonaccorso at 2020-11-20T21:20:08+01:00 CVE-2020-28974/linux assigned - - - - - 1 changed file: - data/CVE/list Changes: = data/C

[Git][security-tracker-team/security-tracker][master] automatic update

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 39b1f3ca by security tracker role at 2020-11-20T20:10:38+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-28924/rclone

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c275f329 by Salvatore Bonaccorso at 2020-11-20T14:58:18+01:00 Add Debian bug reference for CVE-2020-28924/rclone - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2020-28924/rclone

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: de446bba by Salvatore Bonaccorso at 2020-11-20T14:51:47+01:00 Update information on CVE-2020-28924/rclone - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Drop raptor2 from dla-needed

2020-11-20 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 21b42905 by Utkarsh Gupta at 2020-11-20T18:24:44+05:30 Drop raptor2 from dla-needed - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-25713/raptor2 as postponed

2020-11-20 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 3a49296e by Utkarsh Gupta at 2020-11-20T18:22:36+05:30 Mark CVE-2020-25713/raptor2 as postponed Thanks, Salvatore, Emilio for helping with this assessment. - - - - - 1 changed file: - data/CVE/lis

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2020-26235/rust-time

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ee0619d0 by Salvatore Bonaccorso at 2020-11-20T13:36:48+01:00 Update information for CVE-2020-26235/rust-time - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2020-26235 is assigned for RUSTSEC-2020-0071 issue

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2e30aaa1 by Salvatore Bonaccorso at 2020-11-20T13:29:52+01:00 CVE-2020-26235 is assigned for RUSTSEC-2020-0071 issue - - - - - 8a37195e by Salvatore Bonaccorso at 2020-11-20T13:30:50+01:00 Add

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for rust-lock-api issue

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f55d07ad by Salvatore Bonaccorso at 2020-11-20T13:16:55+01:00 Add Debian bug reference for rust-lock-api issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] associate CVE-2020-28924 with src:rclone

2020-11-20 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 1f3452b5 by Moritz Muehlenhoff at 2020-11-20T11:15:40+01:00 associate CVE-2020-28924 with src:rclone - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new rust-lock-api, rust-time issues

2020-11-20 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b61e256 by Moritz Muehlenhoff at 2020-11-20T11:07:53+01:00 new rust-lock-api, rust-time issues - - - - - 1 changed file: - data/CVE/list Changes: = data

[Git][security-tracker-team/security-tracker][master] new resteasy issue

2020-11-20 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 21268f3a by Moritz Muehlenhoff at 2020-11-20T11:02:39+01:00 new resteasy issue xpdf n/a - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/lis

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim jupyter-notebook.

2020-11-20 Thread Chris Lamb
pyter-notebook (Chris Lamb) NOTE: 20201120: Defer upload for a week or so. Last DLA release was less than a month (abhijith) -- lemonldap-ng (Utkarsh) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fdc6bc3f9f2d7242faf40fa69056cd1b283c3e3a -- Vi

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim php-pear.

2020-11-20 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 08aa4b34 by Chris Lamb at 2020-11-20T09:36:43+00:00 data/dla-needed.txt: Claim php-pear. - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-neede

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-28168/node-axios

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9125848b by Salvatore Bonaccorso at 2020-11-20T10:21:20+01:00 Add Debian bug reference for CVE-2020-28168/node-axios - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] CVE-2020-26215/jupyter-notebook fixed in unstable

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3618ad4e by Salvatore Bonaccorso at 2020-11-20T09:57:21+01:00 CVE-2020-26215/jupyter-notebook fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Demote CVE-2020-24890/libraw to unimportant

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c6099b98 by Salvatore Bonaccorso at 2020-11-20T09:54:34+01:00 Demote CVE-2020-24890/libraw to unimportant MITRE CNA is pinged on the problem as this might be a valid candidate for REJECT, as th

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2020-24889/libraw

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 838cb23f by Salvatore Bonaccorso at 2020-11-20T09:46:48+01:00 Track fixed version for CVE-2020-24889/libraw - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-10753/ceph

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 555dee55 by Salvatore Bonaccorso at 2020-11-20T09:44:35+01:00 Add Debian bug reference for CVE-2020-10753/ceph - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process several NFUs

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c1f8b668 by Salvatore Bonaccorso at 2020-11-20T09:32:38+01:00 Process several NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] automatic update

2020-11-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: abd04bc2 by security tracker role at 2020-11-20T08:10:22+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list