[Git][security-tracker-team/security-tracker][master] Reserve DLA-2804-1 for libsdl1.2

Adrian Bunk (@bunk) bunk at debian.org
Sun Oct 31 16:23:44 GMT 2021



Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker


Commits:
88b9d3bf by Adrian Bunk at 2021-10-31T18:20:37+02:00
Reserve DLA-2804-1 for libsdl1.2

- - - - -


3 changed files:

- data/CVE/list
- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -156744,7 +156744,6 @@ CVE-2019-13616 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.
 	[jessie] - libsdl2 <postponed> (can be fixed along with more important patches)
 	- libsdl1.2 1.2.15+dfsg2-5
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	[jessie] - libsdl1.2 <postponed> (can be fixed along with more important patches)
 	- libsdl2-image 2.0.5+dfsg1-2 (bug #940934)
 	[buster] - libsdl2-image <no-dsa> (Minor issue)
@@ -175270,7 +175269,6 @@ CVE-2019-7638 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4500
@@ -175280,7 +175278,6 @@ CVE-2019-7637 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.6+dfsg1-4 (bug #924610)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4497
 	NOTE: https://hg.libsdl.org/SDL/rev/9b0e5c555c0f (SDL-1.2)
@@ -175293,7 +175290,6 @@ CVE-2019-7636 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4499
@@ -175303,7 +175299,6 @@ CVE-2019-7635 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1865-1 DLA-1861-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	- sdl-image1.2 1.2.12-11 (bug #932755)
@@ -175446,7 +175441,6 @@ CVE-2019-7578 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4494
@@ -175456,7 +175450,6 @@ CVE-2019-7577 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4492
@@ -175468,7 +175461,6 @@ CVE-2019-7576 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	[stretch] - libsdl2 <no-dsa> (Minor issue)
@@ -175479,7 +175471,6 @@ CVE-2019-7575 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-2536-1 DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.libsdl.org/show_bug.cgi?id=4493
@@ -175490,7 +175481,6 @@ CVE-2019-7574 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	[stretch] - libsdl2 <no-dsa> (Minor issue)
@@ -175502,7 +175492,6 @@ CVE-2019-7573 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	[stretch] - libsdl2 <no-dsa> (Minor issue)
@@ -175515,7 +175504,6 @@ CVE-2019-7572 (SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0
 	{DLA-1714-1 DLA-1713-1}
 	- libsdl1.2 1.2.15+dfsg2-5 (bug #924609)
 	[buster] - libsdl1.2 <no-dsa> (Minor issue)
-	[stretch] - libsdl1.2 <no-dsa> (Minor issue)
 	- libsdl2 2.0.10+dfsg1-1 (bug #924610)
 	[buster] - libsdl2 <no-dsa> (Minor issue)
 	[stretch] - libsdl2 <no-dsa> (Minor issue)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[31 Oct 2021] DLA-2804-1 libsdl1.2 - security update
+	{CVE-2019-7572 CVE-2019-7573 CVE-2019-7574 CVE-2019-7575 CVE-2019-7576 CVE-2019-7577 CVE-2019-7578 CVE-2019-7635 CVE-2019-7636 CVE-2019-7637 CVE-2019-7638 CVE-2019-13616}
+	[stretch] - libsdl1.2 1.2.15+dfsg1-4+deb9u1
 [31 Oct 2021] DLA-2803-1 libsdl2 - security update
 	{CVE-2017-2888 CVE-2019-7637}
 	[stretch] - libsdl2 2.0.5+dfsg1-2+deb9u2


=====================================
data/dla-needed.txt
=====================================
@@ -56,8 +56,6 @@ libgit2 (Utkarsh)
   NOTE: 20211029: taking this with my maintainer hat on; will investigate
   NOTE: 20211029: and TAL later next week. (utkarsh)
 --
-libsdl1.2 (Adrian Bunk)
---
 libmspack (Adrian Bunk)
 --
 libssh2 (Adrian Bunk)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/88b9d3bf4891083691d6aabe65ddc93626e215c7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/88b9d3bf4891083691d6aabe65ddc93626e215c7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211031/84009a0e/attachment.htm>


More information about the debian-security-tracker-commits mailing list