[Git][security-tracker-team/security-tracker][master] 18 commits: CVE-2023-34969,dbus: Buster is no-dsa

2023-06-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 08791698 by Markus Koschany at 2023-06-12T04:46:59+02:00 CVE-2023-34969,dbus: Buster is no-dsa This is a minor issue. Requires a root user to monitor dbus while another non-privileged user triggers

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3451-1 for pypdf2

2023-06-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: aac833be by Markus Koschany at 2023-06-09T23:36:26+02:00 Reserve DLA-3451-1 for pypdf2 - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes

[Git][security-tracker-team/security-tracker][master] Claim erlang and golang-go.crypto.

2023-06-02 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 297878dd by Markus Koschany at 2023-06-03T02:56:27+02:00 Claim erlang and golang-go.crypto. - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3426-2 for netatalk

2023-06-01 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ecc033d6 by Markus Koschany at 2023-06-01T19:40:51+02:00 Reserve DLA-3426-2 for netatalk - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3427-2 texlive-bin

2023-05-31 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 503d755c by Markus Koschany at 2023-05-31T21:03:44+02:00 Reserve DLA-3427-2 texlive-bin - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes

[Git][security-tracker-team/security-tracker][master] Fix textlive <-> texlive typo.

2023-05-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b2e8517 by Markus Koschany at 2023-05-20T20:48:54+02:00 Fix textlive - texlive typo. - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] CVE-2023-32668,texlive-bin: Buster is no-dsa

2023-05-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 468a59d0 by Markus Koschany at 2023-05-20T18:19:23+02:00 CVE-2023-32668,texlive-bin: Buster is no-dsa Minor issue - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Fix DLA-3427-1 entries

2023-05-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ebd6f3a1 by Markus Koschany at 2023-05-20T18:01:57+02:00 Fix DLA-3427-1 entries - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3427-1 for textlive-bin

2023-05-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 5bc9c211 by Markus Koschany at 2023-05-20T17:59:52+02:00 Reserve DLA-3427-1 for textlive-bin - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA

[Git][security-tracker-team/security-tracker][master] dsa-needed.txt: remove myself from netatalk update for now

2023-05-17 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d2f489b7 by Markus Koschany at 2023-05-18T00:15:50+02:00 dsa-needed.txt: remove myself from netatalk update for now - - - - - 1 changed file: - data/dsa-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3426-1 for netatalk

2023-05-16 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 8009518b by Markus Koschany at 2023-05-17T00:20:16+02:00 Reserve DLA-3426-1 for netatalk - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Claim golang-go.crypto in dla-needed.txt

2023-05-13 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: bb64d571 by Markus Koschany at 2023-05-14T01:43:06+02:00 Claim golang-go.crypto in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3420-1 for golang-websocket

2023-05-13 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f8a5df8 by Markus Koschany at 2023-05-14T00:39:58+02:00 Reserve DLA-3420-1 for golang-websocket - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 3 commits: Claim erlang in dla-needed.txt

2023-05-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4cfc99b3 by Markus Koschany at 2023-05-10T00:32:40+02:00 Claim erlang in dla-needed.txt - - - - - e4dcf3e8 by Markus Koschany at 2023-05-10T00:37:11+02:00 Claim golang-websocket in dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 8 commits: CVE-2021-40647,CVE-2021-40648,man2html: Buster is no-dsa

2023-05-07 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b9b94f8 by Markus Koschany at 2023-05-08T00:17:08+02:00 CVE-2021-40647,CVE-2021-40648,man2html: Buster is no-dsa Minor issues - - - - - d9d02f10 by Markus Koschany at 2023-05-08T00:19:14+02:00

[Git][security-tracker-team/security-tracker][master] 5 commits: Mark pluxml CVE in buster EOL

2023-05-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 1f8dda2f by Markus Koschany at 2023-05-06T00:14:57+02:00 Mark pluxml CVE in buster EOL pluxml has been removed from Debian. Last upstream activity was in August 2022. Currently there is no sign

[Git][security-tracker-team/security-tracker][master] Claim r-cran-commonmark,tinymce,pluxml in dla-needed.txt

2023-05-02 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 335f7ab9 by Markus Koschany at 2023-05-03T03:31:07+02:00 Claim r-cran-commonmark,tinymce,pluxml in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Remove heimdal from dla-needed.txt

2023-04-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ea923509 by Markus Koschany at 2023-04-21T23:00:32+02:00 Remove heimdal from dla-needed.txt Nothing to do anymore - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Claim heimdal in dla-needed.txt

2023-04-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 33de4ef6 by Markus Koschany at 2023-04-21T22:10:45+02:00 Claim heimdal in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] Remove ceph from dla-needed.txt

2023-04-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 48662dac by Markus Koschany at 2023-04-21T22:09:14+02:00 Remove ceph from dla-needed.txt Currently there are no open issues in Buster. Everything else are no-dsa, minor issues. - - - - - 1

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2023-27534,curl: buster is no-dsa

2023-04-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 37dff768 by Markus Koschany at 2023-04-21T21:57:38+02:00 CVE-2023-27534,curl: buster is no-dsa Minor issue - - - - - 1bcf7220 by Markus Koschany at 2023-04-21T21:58:32+02:00 Reserve DLA-3398-1

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3394-1 for asterisk

2023-04-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: e53f4701 by Markus Koschany at 2023-04-19T00:11:26+02:00 Reserve DLA-3394-1 for asterisk - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2023-27585,asterisk: Buster is affected

2023-04-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ec479a33 by Markus Koschany at 2023-04-18T22:40:56+02:00 CVE-2023-27585,asterisk: Buster is affected The vulnerable code is shipped in debian/pjproject_2.12.1~dfsg.orig.tar.bz2 and applied at build

[Git][security-tracker-team/security-tracker][master] 6 commits: CVE-2023-29383,shadow: Buster is no-dsa

2023-04-16 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d0686f73 by Markus Koschany at 2023-04-17T00:08:33+02:00 CVE-2023-29383,shadow: Buster is no-dsa Minor issue - - - - - f4dddb00 by Markus Koschany at 2023-04-17T00:48:02+02:00 CVE-2023-26555,ntp

[Git][security-tracker-team/security-tracker][master] 8 commits: LTS: add configobj to dla-needed.txt

2023-04-16 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d336af8c by Markus Koschany at 2023-04-16T23:59:39+02:00 LTS: add configobj to dla-needed.txt - - - - - adfdfed3 by Markus Koschany at 2023-04-16T23:59:40+02:00 CVE-2023-30630,dmidecode: Buster

[Git][security-tracker-team/security-tracker][master] Claim curl in dla-needed.txt

2023-04-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3374acc4 by Markus Koschany at 2023-04-10T20:19:23+02:00 Claim curl in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3388-1 for keepalived

2023-04-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: a2f46d09 by Markus Koschany at 2023-04-10T19:58:11+02:00 Reserve DLA-3388-1 for keepalived - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5384-1 for openimageio

2023-04-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fe4043d by Markus Koschany at 2023-04-10T11:11:54+02:00 Reserve DSA-5384-1 for openimageio - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] CVE-2022-38143,openimageio: Bullseye is not affected.

2023-04-09 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d7dfcec by Markus Koschany at 2023-04-09T22:51:43+02:00 CVE-2022-38143,openimageio: Bullseye is not affected. - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: add openimageio to dla-needed.txt

2023-04-06 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3203b758 by Markus Koschany at 2023-04-06T10:34:55+02:00 LTS: add openimageio to dla-needed.txt - - - - - 32c7162b by Markus Koschany at 2023-04-06T10:34:55+02:00 Readd openimageio to dla

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3385-1 for trafficserver

2023-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 37314e97 by Markus Koschany at 2023-04-05T23:58:12+02:00 Reserve DLA-3385-1 for trafficserver - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5381-1 for tomcat9

2023-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: baa5071f by Markus Koschany at 2023-04-05T21:50:16+02:00 Reserve DSA-5381-1 for tomcat9 - - - - - 2 changed files: - data/CVE/list - data/DSA/list Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3384-1 for tomcat9

2023-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 743234c3 by Markus Koschany at 2023-04-05T21:42:21+02:00 Reserve DLA-3384-1 for tomcat9 - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes

[Git][security-tracker-team/security-tracker][master] CVE-2022-45143,tomcat9: buster is not affected

2023-04-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 989ac170 by Markus Koschany at 2023-04-05T18:28:24+02:00 CVE-2022-45143,tomcat9: buster is not affected - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: Claim trafficserver in dla-needed.txt

2023-04-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: e5b0afee by Markus Koschany at 2023-04-05T02:05:37+02:00 Claim trafficserver in dla-needed.txt - - - - - 4c54889c by Markus Koschany at 2023-04-05T02:07:36+02:00 Claim keepalived in dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3382-1 for openimageio

2023-04-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: cdf76f76 by Markus Koschany at 2023-04-05T00:52:38+02:00 Reserve DLA-3382-1 for openimageio - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 4 commits: CVE-2022-41981,openimageio: Link to fixing commits

2023-04-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 02b23786 by Markus Koschany at 2023-04-04T22:41:50+02:00 CVE-2022-41981,openimageio: Link to fixing commits We also have to backport the safe_strlen function in order to fix this issue

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3371-1 for unbound

2023-03-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 08d0cf16 by Markus Koschany at 2023-03-29T14:46:34+02:00 Reserve DLA-3371-1 for unbound - - - - - 2 changed files: - data/CVE/list - data/DLA/list Changes

[Git][security-tracker-team/security-tracker][master] 10 commits: CVE-2022-41649,openimageio: Link to fixing commit

2023-03-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d00da44c by Markus Koschany at 2023-03-19T23:43:52+01:00 CVE-2022-41649,openimageio: Link to fixing commit - - - - - 0b8e81cb by Markus Koschany at 2023-03-19T23:43:53+01:00 CVE-2022-41684

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-38143,openimageio: Link to pull request

2023-03-13 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f25824d6 by Markus Koschany at 2023-03-06T01:31:29+01:00 CVE-2022-38143,openimageio: Link to pull request - - - - - 07c4bf08 by Markus Koschany at 2023-03-13T10:59:07+01:00 Merge branch master

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3342-1 for freeradius

2023-02-24 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b068ca8 by Markus Koschany at 2023-02-24T17:16:33+01:00 Reserve DLA-3342-1 for freeradius - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Claim freeradius in dla-needed.txt

2023-02-23 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: c858649b by Markus Koschany at 2023-02-23T12:41:54+01:00 Claim freeradius in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5358-1 for asterisk

2023-02-23 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f4bbc971 by Markus Koschany at 2023-02-23T10:06:40+01:00 Reserve DSA-5358-1 for asterisk - - - - - 2 changed files: - data/CVE/list - data/DSA/list Changes

[Git][security-tracker-team/security-tracker][master] Claim openimageio in dla-needed.txt

2023-02-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 23e287e6 by Markus Koschany at 2023-02-22T23:38:48+01:00 Claim openimageio in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-39244,CVE-2022-39269, Asterisk: Bullseye is affected

2023-02-22 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c739f6b by Markus Koschany at 2023-02-22T22:53:14+01:00 CVE-2022-39244,CVE-2022-39269, Asterisk: Bullseye is affected Remove not-affected tag because the vulnerable code is in PJSIP which we ship

[Git][security-tracker-team/security-tracker][master] 4 commits: Claim asterisk in dla-needed.txt

2023-02-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 6add35c4 by Markus Koschany at 2023-02-22T00:14:42+01:00 Claim asterisk in dla-needed.txt - - - - - f31bc65e by Markus Koschany at 2023-02-22T00:14:58+01:00 Remove tiff from dla-needed.txt because

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3333-1 for tiff

2023-02-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dbc9024 by Markus Koschany at 2023-02-21T23:55:06+01:00 Reserve DLA--1 for tiff - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3327-1 for nss

2023-02-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 121e7aee by Markus Koschany at 2023-02-20T16:11:24+01:00 Reserve DLA-3327-1 for nss - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 11 commits: Triage gpac for Buster as EOL.

2023-02-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 0efe7456 by Markus Koschany at 2023-02-20T00:28:43+01:00 Triage gpac for Buster as EOL. - - - - - 73e31c31 by Markus Koschany at 2023-02-20T00:28:43+01:00 LTS: add curl to dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 11 commits: LTS: add freeradius to dla-needed.txt

2023-02-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 92ad2370 by Markus Koschany at 2023-02-19T21:27:08+01:00 LTS: add freeradius to dla-needed.txt - - - - - 7a305a92 by Markus Koschany at 2023-02-19T21:27:09+01:00 CVE-2023-25193,harfbuzz: Buster

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2022-1471,snakeyaml: unimportant

2023-02-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 8b5ce926 by Markus Koschany at 2023-02-19T17:30:56+01:00 CVE-2022-1471,snakeyaml: unimportant Snakeyaml is not designed to process untrusted YAML input. This has been clarified for users in version

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: add c-ares to dla-needed.txt

2023-02-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 49045c6b by Markus Koschany at 2023-02-18T23:52:59+01:00 LTS: add c-ares to dla-needed.txt - - - - - a51d6d54 by Markus Koschany at 2023-02-18T23:53:33+01:00 Reserve DLA-3323-1 for c-ares

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS: add tiff to dla-needed.txt

2023-02-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d8a8ff27 by Markus Koschany at 2023-02-18T17:42:19+01:00 LTS: add tiff to dla-needed.txt - - - - - 2ea93210 by Markus Koschany at 2023-02-18T17:42:36+01:00 Claim tiff in dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5354-1 for snort

2023-02-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 6affaa07 by Markus Koschany at 2023-02-18T17:33:30+01:00 Reserve DSA-5354-1 for snort - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3321-1 for gnutls28

2023-02-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 05f03a39 by Markus Koschany at 2023-02-18T17:15:52+01:00 Reserve DLA-3321-1 for gnutls28 - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] LTS: add golang-github-opencontainers-selinux to dla-needed.txt

2023-02-16 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fb5a8b1 by Markus Koschany at 2023-02-16T20:23:43+01:00 LTS: add golang-github-opencontainers-selinux to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] CVE-2023-0056,haproxy: Mark Buster as not-affected

2023-02-14 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b4bf1212 by Markus Koschany at 2023-02-14T19:12:41+01:00 CVE-2023-0056,haproxy: Mark Buster as not-affected The interim response flag 1xx was added to the code later. - - - - - 1 changed file

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3318-1 for haproxy

2023-02-14 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 7de1aa7f by Markus Koschany at 2023-02-14T18:59:01+01:00 Reserve DLA-3318-1 for haproxy - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Claim haproxy in dla-needed.txt

2023-02-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 33bfbda3 by Markus Koschany at 2023-02-11T00:25:50+01:00 Claim haproxy in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3317-1 for snort

2023-02-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: cd6e2869 by Markus Koschany at 2023-02-11T00:16:34+01:00 Reserve DLA-3317-1 for snort - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3314-1 for libsdl2

2023-02-08 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 85d09bd6 by Markus Koschany at 2023-02-09T00:44:58+01:00 Reserve DLA-3314-1 for libsdl2 - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: Update snort notes in dla-needed.txt

2023-01-21 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 1479038b by Markus Koschany at 2023-01-21T23:06:22+01:00 Update snort notes in dla-needed.txt - - - - - 2499a371 by Markus Koschany at 2023-01-22T00:06:32+01:00 Claim libsdl2 in dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Claim snort in dla-needed.txt

2023-01-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ff8c5d23 by Markus Koschany at 2023-01-20T17:56:20+01:00 Claim snort in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3277-1 for powerline-gitstatus

2023-01-20 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 99db44e1 by Markus Koschany at 2023-01-20T17:40:43+01:00 Reserve DLA-3277-1 for powerline-gitstatus - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Update snakeyaml NOTE and claim powerline-gitstatus in dla-needed.txt

2023-01-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: cc06d940 by Markus Koschany at 2023-01-20T00:30:48+01:00 Update snakeyaml NOTE and claim powerline-gitstatus in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3276-1 for lava

2023-01-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ba9705ac by Markus Koschany at 2023-01-19T23:54:45+01:00 Reserve DLA-3276-1 for lava - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5323-1 for libitext5-java.

2023-01-19 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 5e8a38fa by Markus Koschany at 2023-01-19T23:34:29+01:00 Reserve DSA-5323-1 for libitext5-java. - - - - - 1 changed file: - data/DSA/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Claim lava in dla-needed.txt

2023-01-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4fce543a by Markus Koschany at 2023-01-18T23:29:34+01:00 Claim lava in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3273-1 for libitext5-java

2023-01-18 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 93b105cc by Markus Koschany at 2023-01-18T22:59:23+01:00 Reserve DLA-3273-1 for libitext5-java - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3268-1 for netty

2023-01-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d6fe26eb by Markus Koschany at 2023-01-11T23:42:28+01:00 Reserve DLA-3268-1 for netty - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3267-1 for libxstream-java

2023-01-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d55dd260 by Markus Koschany at 2023-01-11T23:40:25+01:00 Reserve DLA-3267-1 for libxstream-java - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: Reserve DSA-5315-1 libxstream-java

2023-01-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 179ca9bd by Markus Koschany at 2023-01-11T23:23:33+01:00 Reserve DSA-5315-1 libxstream-java - - - - - a3c975ce by Markus Koschany at 2023-01-11T23:24:43+01:00 Reserve DSA-5316-1 netty

[Git][security-tracker-team/security-tracker][master] CVE-2022-41966,libxstream-java: fixed in unstable

2023-01-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f216301 by Markus Koschany at 2023-01-11T14:05:01+01:00 CVE-2022-41966,libxstream-java: fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Claim libxstream-java in dsa-needed.txt

2023-01-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: c5733ce5 by Markus Koschany at 2023-01-11T00:37:14+01:00 Claim libxstream-java in dsa-needed.txt - - - - - 1 changed file: - data/dsa-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: Reserve DSA-5312-1 for libjettison-java.

2023-01-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d52efcca by Markus Koschany at 2023-01-10T23:56:35+01:00 Reserve DSA-5312-1 for libjettison-java. - - - - - a920ba6e by Markus Koschany at 2023-01-10T23:57:39+01:00 Reserve DSA-5313-1 for hsqldb

[Git][security-tracker-team/security-tracker][master] CVE-2021-37136, CVE-2021-37137, CVE-2021-43797, CVE-2022-41881, CVE-2022-41915, netty

2023-01-01 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9dcadd10 by Markus Koschany at 2023-01-01T23:16:55+01:00 CVE-2021-37136,CVE-2021-37137,CVE-2021-43797,CVE-2022-41881,CVE-2022-41915,netty fixed in unstable - - - - - 1 changed file: - data/CVE

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-41881,netty: Link to fixing commit

2023-01-01 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: c4a685e5 by Markus Koschany at 2023-01-01T19:07:24+01:00 CVE-2022-41881,netty: Link to fixing commit - - - - - 18eefb99 by Markus Koschany at 2023-01-01T19:10:06+01:00 CVE-2022-41915,netty: Link

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3259-1 for libjettison-java

2022-12-31 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b3a5378a by Markus Koschany at 2022-12-31T18:17:33+01:00 Reserve DLA-3259-1 for libjettison-java - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] CVE-2022-40150, CVE-2022-45685, CVE-2022-45693,libjettison-java: fixed in

2022-12-31 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 8e90802f by Markus Koschany at 2022-12-31T11:30:13+01:00 CVE-2022-40150, CVE-2022-45685, CVE-2022-45693,libjettison-java: fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5307-1 libcommons-net-java

2022-12-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f62c0be by Markus Koschany at 2022-12-29T22:08:33+01:00 Reserve DSA-5307-1 libcommons-net-java - - - - - 1 changed file: - data/DSA/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Claim libjettison-java, libitext5-java and netty and dla-needed.txt

2022-12-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: f9345f84 by Markus Koschany at 2022-12-29T21:46:39+01:00 Claim libjettison-java, libitext5-java and netty and dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3251-1 for libcommons-net-java

2022-12-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ca527e7 by Markus Koschany at 2022-12-29T21:39:10+01:00 Reserve DLA-3251-1 for libcommons-net-java - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Claim hsqldb in dsa-needed.txt

2022-12-29 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ce31cdfb by Markus Koschany at 2022-12-29T21:04:46+01:00 Claim hsqldb in dsa-needed.txt - - - - - 1 changed file: - data/dsa-needed.txt Changes: = data/dsa

[Git][security-tracker-team/security-tracker][master] CVE-2021-37533,libcommons-net-java: fixed in unstable

2022-12-27 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b5b0644f by Markus Koschany at 2022-12-27T17:14:55+01:00 CVE-2021-37533,libcommons-net-java: fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-46392,mbedtls: mark Buster as postponed

2022-12-25 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: a1370ab8 by Markus Koschany at 2022-12-25T22:52:27+01:00 CVE-2022-46392,mbedtls: mark Buster as postponed Minor issue because an attacker must be able to observe the victim performing a single

[Git][security-tracker-team/security-tracker][master] CVE-2022-46393,mbedtls: buster and bullseye are not affected

2022-12-25 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 05d5d72c by Markus Koschany at 2022-12-25T22:15:49+01:00 CVE-2022-46393,mbedtls: buster and bullseye are not affected Correct wrong entry CVE-2022-46393 - CVE-2022-46392 - - - - - 1 changed file

[Git][security-tracker-team/security-tracker][master] LTS: add openimageio to dla-needed.txt

2022-12-25 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 42c380ea by Markus Koschany at 2022-12-25T20:22:56+01:00 LTS: add openimageio to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 18 commits: CVE-2022-46393,mbedtls: Buster and Bullseye are not affected

2022-12-25 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 73685136 by Markus Koschany at 2022-12-25T20:12:28+01:00 CVE-2022-46393,mbedtls: Buster and Bullseye are not affected The vulnerable code was introduced later - - - - - 33d7a2d3 by Markus Koschany

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3248-1 for libksba

2022-12-24 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d1252530 by Markus Koschany at 2022-12-24T16:22:33+01:00 Reserve DLA-3248-1 for libksba - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] Claim mbedtls in dla-needed.txt

2022-12-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 381b2c8f by Markus Koschany at 2022-12-12T01:03:16+01:00 Claim mbedtls in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3236-1 for openexr

2022-12-11 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 432e5017 by Markus Koschany at 2022-12-12T00:50:31+01:00 Reserve DLA-3236-1 for openexr - - - - - 3 changed files: - data/CVE/list - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5299-1 for openexr

2022-12-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2163da4a by Markus Koschany at 2022-12-10T17:20:06+01:00 Reserve DSA-5299-1 for openexr - - - - - 3 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3234-1 for hsqldb

2022-12-10 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ccf0ccd8 by Markus Koschany at 2022-12-10T17:14:37+01:00 Reserve DLA-3234-1 for hsqldb - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-40159,CVE-2022-40160,libcommons-jxpath-java

2022-12-05 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 89f32d7a by Markus Koschany at 2022-12-05T14:21:18+01:00 CVE-2022-40159,CVE-2022-40160,libcommons-jxpath-java Both CVE are disputed and will probably be rejected. - - - - - ae73fb32 by Markus

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2022-41853,hsqldb: fixed in unstable

2022-12-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a315e62 by Markus Koschany at 2022-12-04T21:57:51+01:00 CVE-2022-41853,hsqldb: fixed in unstable - - - - - cafb4773 by Markus Koschany at 2022-12-04T22:18:30+01:00 Update firmware-nonfree in dla

[Git][security-tracker-team/security-tracker][master] 3 commits: Reassign jqueryui to Utkarsh.

2022-12-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 03920638 by Markus Koschany at 2022-12-04T14:45:19+01:00 Reassign jqueryui to Utkarsh. - - - - - 1e909d80 by Markus Koschany at 2022-12-04T14:48:11+01:00 Claim openexr in dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5294-1 for jhead

2022-12-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 6bfc1e1d by Markus Koschany at 2022-12-04T14:43:40+01:00 Reserve DSA-5294-1 for jhead - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] Reserve DLA-3219-1 for jhead

2022-12-04 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 48c98528 by Markus Koschany at 2022-12-04T14:16:46+01:00 Reserve DLA-3219-1 for jhead - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Git][security-tracker-team/security-tracker][master] 4 commits: Claim hsqldb in dla-needed.txt

2022-12-03 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: db12bfbd by Markus Koschany at 2022-12-03T22:20:04+01:00 Claim hsqldb in dla-needed.txt - - - - - 5a4c54c5 by Markus Koschany at 2022-12-03T22:22:56+01:00 Remove android-platform-system-core from

[Git][security-tracker-team/security-tracker][master] Reserve DSA-5290-1 commons-configuration2

2022-11-28 Thread Markus Koschany (@apo)
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ff4a499 by Markus Koschany at 2022-11-28T12:26:39+01:00 Reserve DSA-5290-1 commons-configuration2 - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes

<    1   2   3   4   5   6   7   8   9   10   >