[Git][security-tracker-team/security-tracker][master] Reserve DLA-2476-1 for brotli

Roberto C. Sánchez roberto at debian.org
Tue Dec 1 22:56:45 GMT 2020



Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9e780447 by Roberto C. Sánchez at 2020-12-01T17:56:21-05:00
Reserve DLA-2476-1 for brotli

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[01 Dec 2020] DLA-2476-1 brotli - security update
+	{CVE-2020-8927}
+	[stretch] - brotli 0.5.2+dfsg-2+deb9u1
 [01 Dec 2020] DLA-2475-1 pdfresurrect - security update
 	{CVE-2019-14934 CVE-2020-20740}
 	[stretch] - pdfresurrect 0.12-6+deb9u1


=====================================
data/dla-needed.txt
=====================================
@@ -27,11 +27,6 @@ ansible (Markus Koschany)
   NOTE: 20201130: Not everything is clear and obvious thus fixing some CVE is
   NOTE: 20201130: better than continue to ignore all of them.
 --
-brotli (Roberto C. Sánchez)
-  NOTE: 20201025: Requested patch review on debian-lts at l.d.o (roberto)
-  NOTE: 20201114: Requested assistance from original patch author. (roberto)
-  NOTE: 20201201: Upstream has responded and verified the required backport changes. (roberto)
---
 ceph
   NOTE: 20200707: Vulnerable to at least CVE-2018-14662. (lamby)
   NOTE: 20200707: Some discussion regarding removal <https://lists.debian.org/debian-lts/2020/04/msg00019.html> (lamby)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9e780447059dc7de19e820db8f46d05fc906eeb9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9e780447059dc7de19e820db8f46d05fc906eeb9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201201/1c50ac24/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list