[Git][security-tracker-team/security-tracker][master] Add additional references for speculation issues variants

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 20d990a2 by Salvatore Bonaccorso at 2022-03-09T08:42:40+01:00 Add additional references for speculation issues variants - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add firefox-esr issues from mfsa2022-11

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 406256f0 by Salvatore Bonaccorso at 2022-03-09T06:40:16+01:00 Add firefox-esr issues from mfsa2022-11 - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] Add new firefox issues from nfsa2022-10

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dba5791 by Salvatore Bonaccorso at 2022-03-09T06:37:40+01:00 Add new firefox issues from nfsa2022-10 - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2022-0543/redis via unstble

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b7c5687c by Salvatore Bonaccorso at 2022-03-08T21:49:07+01:00 Track fixed version for CVE-2022-0543/redis via unstble - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] Adjust as well the subject line for DLA-2938-1

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ddd8b24b by Salvatore Bonaccorso at 2022-03-08T21:43:50+01:00 Adjust as well the subject line for DLA-2938-1 - - - - - 1 changed file: - data/DLA/list Changes: ===

[Git][security-tracker-team/security-tracker][master] Adjust source package name used for DLA-2938-1: python-twisted -> twisted

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 81682eec by Salvatore Bonaccorso at 2022-03-08T21:43:06+01:00 Adjust source package name used for DLA-2938-1: python-twisted -> twisted - - - - - 1 changed file: - data/DLA/list Changes:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2022-24303 back to ignored

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ace586fd by Salvatore Bonaccorso at 2022-03-08T21:41:28+01:00 Mark CVE-2022-24303 back to ignored Play safe here with the affected status given upstream mentions that the issue has been present

[Git][security-tracker-team/security-tracker][master] Fix for CVE-2022-21658/rustc moved to unstable

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 13c04ade by Salvatore Bonaccorso at 2022-03-08T21:33:44+01:00 Fix for CVE-2022-21658/rustc moved to unstable - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b4cbd4a9 by Salvatore Bonaccorso at 2022-03-08T21:26:33+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] Process one NFU

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e248dd3 by Salvatore Bonaccorso at 2022-03-08T21:21:50+01:00 Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ==

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-0856/libcaca

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f287a20b by Salvatore Bonaccorso at 2022-03-08T21:20:13+01:00 Add CVE-2022-0856/libcaca - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/l

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 41060afd by Salvatore Bonaccorso at 2022-03-08T21:19:21+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e7356392 by Salvatore Bonaccorso at 2022-03-08T21:14:08+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e320629 by security tracker role at 2022-03-08T20:10:15+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] thunderbird DSA

2022-03-08 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 16ca9ab0 by Moritz Mühlenhoff at 2022-03-08T20:49:54+01:00 thunderbird DSA - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list ===

[Git][security-tracker-team/security-tracker][master] Add additional references for Spectre-BHB issues

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a00a6a1 by Salvatore Bonaccorso at 2022-03-08T20:04:49+01:00 Add additional references for Spectre-BHB issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for CVE-2022-000{1,2}/linux

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c3806c4 by Salvatore Bonaccorso at 2022-03-08T19:34:04+01:00 Track fixed version via unstable for CVE-2022-000{1,2}/linux This is not completely correct. The fixes applied are mitigating it to

[Git][security-tracker-team/security-tracker][master] Annotate CVE-2022-20003

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4a7433dd by Salvatore Bonaccorso at 2022-03-08T19:32:57+01:00 Annotate CVE-2022-20003 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/lis

[Git][security-tracker-team/security-tracker][master] Add CVE-2022-000{1,2}/linux

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 08ba83d4 by Salvatore Bonaccorso at 2022-03-08T19:05:16+01:00 Add CVE-2022-000{1,2}/linux - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Git][security-tracker-team/security-tracker][master] lts: take firefox-esr

2022-03-08 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: b063754f by Emilio Pozuelo Monfort at 2022-03-08T18:15:00+01:00 lts: take firefox-esr - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] 2 commits: lts: add spip

2022-03-08 Thread Emilio Pozuelo Monfort (@pochu)
+ NOTE: 20220308: seems vulnerable at least to setup_private_mount, + NOTE: 20220308: but double check (pochu) +-- thunderbird (Emilio) -- twisted (Chris Lamb) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/e0a7a32f4193a161470d15067e07a7e98c858834

[Git][security-tracker-team/security-tracker][master] Add tempoary spip entry until CVE assigned for issue fixed in DSA 5093-1

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e0a7a32f by Salvatore Bonaccorso at 2022-03-08T17:17:33+01:00 Add tempoary spip entry until CVE assigned for issue fixed in DSA 5093-1 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Triage CVE-2022-26496 for Stretch

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d89daeb9 by Wouter Verhelst at 2022-03-08T18:13:47+02:00 Triage CVE-2022-26496 for Stretch - - - - - 1 changed file: - data/CVE/list Changes: = data/CV

[Git][security-tracker-team/security-tracker][master] Add CVEs from android security bulletin for linux

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b1149e4 by Salvatore Bonaccorso at 2022-03-08T17:04:26+01:00 Add CVEs from android security bulletin for linux - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla: claim cacti

2022-03-08 Thread Sylvain Beucler (@beuc)
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 5297242b by Sylvain Beucler at 2022-03-08T16:53:39+01:00 dla: claim cacti - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt ===

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5093-1 for spip

2022-03-08 Thread Sebastien Delafond (@seb)
Sebastien Delafond pushed to branch master at Debian Security Tracker / security-tracker Commits: e93dd0a3 by Sébastien Delafond at 2022-03-08T16:35:27+01:00 Reserve DSA-5093-1 for spip - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/lis

[Git][security-tracker-team/security-tracker][master] Track fixed version for nbd via unstable

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 456fcb5f by Salvatore Bonaccorso at 2022-03-08T16:11:45+01:00 Track fixed version for nbd via unstable - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] lts: node-url-parse EOL in stretch

2022-03-08 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 62e191e6 by Emilio Pozuelo Monfort at 2022-03-08T14:16:49+01:00 lts: node-url-parse EOL in stretch - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] 3 commits: lts: add cacti

2022-03-08 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 244fb1f9 by Emilio Pozuelo Monfort at 2022-03-08T13:19:22+01:00 lts: add cacti - - - - - 91d63405 by Emilio Pozuelo Monfort at 2022-03-08T13:19:22+01:00 lts: add libreoffice - - - - - 0d77fb

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2938-1 for python-twisted

2022-03-08 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: ed2cab9d by Chris Lamb at 2022-03-08T11:59:25+00:00 Reserve DLA-2938-1 for python-twisted - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list =

[Git][security-tracker-team/security-tracker][master] Remove doubled reference to mfsa2022-09

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9cf3bbba by Salvatore Bonaccorso at 2022-03-08T12:36:00+01:00 Remove doubled reference to mfsa2022-09 - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim twisted.

2022-03-08 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 690b8f1d by Chris Lamb at 2022-03-08T11:04:38+00:00 data/dla-needed.txt: Claim twisted. - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed

[Git][security-tracker-team/security-tracker][master] dla-needed.txt: Redis is not affected by CVE-2022-0543

2022-03-08 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e828e7d by Chris Lamb at 2022-03-08T11:00:12+00:00 dla-needed.txt: Redis is not affected by CVE-2022-0543 - - - - - 1 changed file: - data/dla-needed.txt Changes: ==

[Git][security-tracker-team/security-tracker][master] Triage CVE-2022-0543 in redis for stretch LTS.

2022-03-08 Thread Chris Lamb (@lamby)
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 266d3913 by Chris Lamb at 2022-03-08T10:57:32+00:00 Triage CVE-2022-0543 in redis for stretch LTS. - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/l

[Git][security-tracker-team/security-tracker][master] new thunderbird issues (fixed in sid)

2022-03-08 Thread Moritz Muehlenhoff (@jmm)
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b0329cb8 by Moritz Muehlenhoff at 2022-03-08T11:37:45+01:00 new thunderbird issues (fixed in sid) - - - - - 1 changed file: - data/CVE/list Changes: = da

[Git][security-tracker-team/security-tracker][master] 5 commits: lts: add redis

2022-03-08 Thread Emilio Pozuelo Monfort (@pochu)
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: f8eb34f2 by Emilio Pozuelo Monfort at 2022-03-08T11:19:32+01:00 lts: add redis - - - - - 9ffebca4 by Emilio Pozuelo Monfort at 2022-03-08T11:19:33+01:00 lts: CVE-2021-3596/imagemagick postpon

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2022-2649{5,6}/nbd

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7bada13a by Salvatore Bonaccorso at 2022-03-08T10:45:43+01:00 Add Debian bug reference for CVE-2022-2649{5,6}/nbd - - - - - 1 changed file: - data/CVE/list Changes: ==

[Git][security-tracker-team/security-tracker][master] Process NFUs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e6e106a5 by Salvatore Bonaccorso at 2022-03-08T09:40:54+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] Unify used NFU name for one product

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ae29bc7d by Salvatore Bonaccorso at 2022-03-08T09:26:56+01:00 Unify used NFU name for one product - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9189c0c1 by Salvatore Bonaccorso at 2022-03-08T09:25:43+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add tryton related CVEs

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3ea46b03 by Salvatore Bonaccorso at 2022-03-08T09:17:44+01:00 Add tryton related CVEs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/lis

[Git][security-tracker-team/security-tracker][master] automatic update

2022-03-08 Thread Salvatore Bonaccorso (@carnil)
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fdb8d06 by security tracker role at 2022-03-08T08:10:19+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list