[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity
Holger Levsen
gitlab at salsa.debian.org
Mon Sep 21 08:04:54 BST 2020
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker
Commits:
848c64bc by Holger Levsen at 2020-09-21T09:02:01+02:00
semi-automatic unclaim after 2 weeks of inactivity
Signed-off-by: Holger Levsen <holger at layer-acht.org>
- - - - -
1 changed file:
- data/dla-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -21,7 +21,7 @@ ansible
NOTE: 20200508: bam: Upstream fix was reverted - https://github.com/ansible/ansible/pull/68983
NOTE: 20200508: bam: See https://github.com/ansible/ansible/issues/67794
--
-ark (Abhijith PA)
+ark
NOTE: 20200731: given PoC not working as intended. (abhijith)
NOTE: 20200801: though testing with other PoC's available over internet seems exploitable (abhijith)
NOTE: 20200820: pinged upstream for help (abhijith)
@@ -84,7 +84,7 @@ golang-go.crypto
--
golang-golang-x-net-dev
--
-guacamole-client (Mike Gabriel)
+guacamole-client
--
jupyter-notebook
NOTE: 20200711: Vulnerable to (at least) CVE-2018-19351. (lamby)
@@ -166,7 +166,7 @@ ruby-rack-cors (Utkarsh)
NOTE: 20200817: Was fixed in DLA-2096-1 for jessie LTS but is now re-vulnerable again in stretch LTS AFAICT. (lamby)
NOTE: 20200914: problems in reproducing. will investigate in sometime. (utkarsh)
--
-samba (Mike Gabriel)
+samba
NOTE: 20200703: Check with security team so that there's no clash for Stretch update. (utkarsh)
NOTE: 20200801: Stretch update already released, so no conflict. (roberto)
NOTE: 20200801: Patches for CVE-2020-14303, CVE-2020-10760, CVE-2020-10745, and CVE-2020-10740, are ready. (roberto)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/848c64bcc5de687d76ac5f425130fce2620e8c0d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/848c64bcc5de687d76ac5f425130fce2620e8c0d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200921/e0d05127/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list