[Git][security-tracker-team/security-tracker][master] Reserve DLA-2340-1 for sqlite3

Roberto C. Sánchez roberto at debian.org
Sat Aug 22 23:32:52 BST 2020



Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b9ad057d by Roberto C. Sánchez at 2020-08-22T18:32:46-04:00
Reserve DLA-2340-1 for sqlite3

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[22 Aug 2020] DLA-2340-1 sqlite3 - security update
+	{CVE-2018-8740 CVE-2018-20346 CVE-2018-20506 CVE-2019-5827 CVE-2019-9936 CVE-2019-9937 CVE-2019-16168 CVE-2019-20218 CVE-2020-11655 CVE-2020-13434 CVE-2020-13630 CVE-2020-13632 CVE-2020-13871}
+	[stretch] - sqlite3 3.16.2-5+deb9u2
 [22 Aug 2020] DLA-2339-1 software-properties - security update
 	{CVE-2020-15709}
 	[stretch] - software-properties 0.96.20.2-1+deb9u1


=====================================
data/dla-needed.txt
=====================================
@@ -182,10 +182,6 @@ shiro
 slirp
   NOTE: 20200724: Version in stretch also requires backport of patch from CVE-2020-7039 (lamby)
 --
-sqlite3 (Roberto C. Sánchez)
-  NOTE: 20200712: Vulnerable to at least CVE-2020-13630. (lamby)
-  NOTE: 20200817: New CVEs have appeared.  Working on those now. (roberto)
---
 squid3 (Markus Koschany)
   NOTE: 20200813: CVE-2020-15049 requires more testing but backport works in
   NOTE: principle.



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b9ad057dc4a54749a5cd37f0326e9b7ede071ac9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b9ad057dc4a54749a5cd37f0326e9b7ede071ac9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200822/21fa6eac/attachment.html>


More information about the debian-security-tracker-commits mailing list