[Git][security-tracker-team/security-tracker][master] Reserve DLA-2500-1 for curl
Roberto C. Sánchez
roberto at debian.org
Sat Dec 19 02:53:55 GMT 2020
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ced44497 by Roberto C. Sánchez at 2020-12-18T21:53:34-05:00
Reserve DLA-2500-1 for curl
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[18 Dec 2020] DLA-2500-1 curl - security update
+ {CVE-2020-8284 CVE-2020-8285 CVE-2020-8286}
+ [stretch] - curl 7.52.1-5+deb9u13
[18 Dec 2020] DLA-2467-2 lxml - regression update
[stretch] - lxml 3.7.1-1+deb9u3
[17 Dec 2020] DLA-2499-1 sympa - security update
=====================================
data/dla-needed.txt
=====================================
@@ -47,8 +47,6 @@ condor
NOTE: 20200712: Requested input on path forward from debian-lts at l.d.o (roberto)
NOTE: 20200727: Waiting on maintainer feedback: https://lists.debian.org/debian-lts/2020/07/msg00108.html (roberto)
--
-curl (Roberto C. Sánchez)
---
f2fs-tools
NOTE: 20200815: About CVE-2020-6070. The fix got introduced between 1.12.0 and 1.13.0, but it is not trivial to
NOTE: 20200815: to detect which of the patches correlates to the CVE. Contacting upstream might be necessary. (sunweaver)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ced4449781949729fc5d3225e95df39fa111597e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ced4449781949729fc5d3225e95df39fa111597e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201219/b75ebfe3/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list