[Git][security-tracker-team/security-tracker][master] Reserve DLA-2780-1 for ruby2.3
Utkarsh Gupta (@utkarsh)
utkarsh at debian.org
Mon Oct 11 06:39:35 BST 2021
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker
Commits:
56a67e79 by Utkarsh Gupta at 2021-10-11T11:09:11+05:30
Reserve DLA-2780-1 for ruby2.3
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[11 Oct 2021] DLA-2780-1 ruby2.3 - security update
+ {CVE-2021-31799 CVE-2021-31810 CVE-2021-32066}
+ [stretch] - ruby2.3 2.3.3-1+deb9u10
[09 Oct 2021] DLA-2779-1 mediawiki - security update
{CVE-2021-35197 CVE-2021-41798 CVE-2021-41799}
[stretch] - mediawiki 1:1.27.7-1~deb9u10
=====================================
data/dla-needed.txt
=====================================
@@ -89,13 +89,6 @@ redis (Chris Lamb)
NOTE: 20211004: Fixed in sid and experimental. (lamby)
NOTE: 20211006: buster-pu filed in #995825. (lamby)
--
-ruby2.3
- NOTE: 20210802: Utkarsh already uploaded a fix for sid/bullseye. (utkarsh)
- NOTE: 20210816: wip, backporting patches; a bit hard. (utkarsh)
- NOTE: 20210920: in midst of backporting patches. (utkarsh)
- NOTE: 20211003: only backporting CVE-2021-31810 is left, which has a bit
- NOTE: 20211003: of difference whilst going back to ruby2.3. (utkarsh)
---
rustc
NOTE: rust-doc in stretch-lts (and jessie-lts) is not installable
NOTE: https://bugs.debian.org/928422
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/56a67e79fd64384c0fd4a4a4a1b7a539286e0c96
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/56a67e79fd64384c0fd4a4a4a1b7a539286e0c96
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211011/5c3e8af9/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list