[Git][security-tracker-team/security-tracker][master] moe buster-specific entries out of dsa-needed and into dla-needed
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Mon Aug 1 13:13:21 BST 2022
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
be6cb8b1 by Moritz Muehlenhoff at 2022-08-01T14:12:57+02:00
moe buster-specific entries out of dsa-needed and into dla-needed
- - - - -
2 changed files:
- data/dla-needed.txt
- data/dsa-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -25,9 +25,21 @@ apache2 (Roberto C. Sánchez)
NOTE: 20220723: Prepared update 2.4.38-3+deb10u8 and filed #1014346 requesting SRM approval for upload to final buster point release (roberto)
NOTE: 20220723: Received upload approval from SRM and uploaded to buster (roberto)
--
+kopanocore
+--
linux (Ben Hutchings)
--
+ndpi
+--
+nodejs
+ one of the upstream fixes doesn't address the security issue
+--
+puma
+--
rustc (Emilio)
NOTE: 20220614: backporting toolchain (rust, llvm...) for Firefox 102 ESR (pochu)
NOTE: 20220712: bullseye backports done, wip on buster updates (pochu)
--
+slurm-llnl
+ upstream changes were deemed too intrusive to backport, best to EOL
+--
=====================================
data/dsa-needed.txt
=====================================
@@ -29,8 +29,6 @@ jetty9
--
kicad (jmm)
--
-kopanocore/oldstable
---
librecad
--
libtirpc (carnil)
@@ -39,27 +37,20 @@ linux (carnil)
Wait until more issues have piled up, though try to regulary rebase for point
releases to more recent v5.10.y versions
--
-ndpi/oldstable
---
net-snmp
--
netatalk
open regression with MacOS, tentative patch not yet merged upstream
--
-nodejs/stable
---
-nodejs/oldstable
- one of the upstream fixes doesn't address the security issue
+nodejs
--
php-horde-mime-viewer
--
php-horde-turba
--
-puma/oldstable
---
rails
--
-rpki-client/stable
+rpki-client
new 7.6 release required libretls, which isn't in Bullseye
--
ruby-rack
@@ -70,8 +61,6 @@ salt
--
samba
--
-slurm-llnl/oldstable
---
sox
patch needed for CVE-2021-40426, check with upstream
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be6cb8b138214deb154f89b4e6b992291f16c97c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be6cb8b138214deb154f89b4e6b992291f16c97c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220801/c9636735/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list