[Git][security-tracker-team/security-tracker][master] 2 commits: Marked CVE-2018-25060 as no-dsa for buster since it is a minor issue.

Ola Lundqvist (@opal) opal at debian.org
Sat Dec 31 13:29:16 GMT 2022



Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker


Commits:
975b5e3f by Ola Lundqvist at 2022-12-31T14:24:31+01:00
Marked CVE-2018-25060 as no-dsa for buster since it is a minor issue.

- - - - -
03ff8af0 by Ola Lundqvist at 2022-12-31T14:28:50+01:00
LTS: add libxstream-java to dla-needed.txt

- - - - -


2 changed files:

- data/CVE/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -30,6 +30,7 @@ CVE-2020-36637 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Chr
 	NOT-FOR-US: Chris92de AdminServ
 CVE-2018-25060 (A vulnerability was found in Macaron csrf and classified as problemati ...)
 	- golang-github-go-macaron-csrf <unfixed>
+	[buster] - golang-github-go-macaron-csrf <no-dsa> (Minor issue)
 	NOTE: https://github.com/go-macaron/csrf/commit/dadd1711a617000b70e5e408a76531b73187031c
 	NOTE: https://github.com/go-macaron/csrf/pull/7
 CVE-2018-25059 (A vulnerability was found in pastebinit up to 0.2.2 and classified as  ...)


=====================================
data/dla-needed.txt
=====================================
@@ -127,6 +127,11 @@ libsdl2
 libstb
   NOTE: 20221111: Programming language: C.
 --
+libxstream-java
+  NOTE: 20221231: Programming language: Java.
+  NOTE: 20221231: VCS: https://salsa.debian.org/lts-team/packages/libxstream-java.git
+  NOTE: 20221231: Testsuite: https://lts-team.pages.debian.net/wiki/TestSuites/libxstream-java.html
+--
 linux (Ben Hutchings)
 --
 man2html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/9aae874e08afafc808aa4f0ca3b5f45f6a916abe...03ff8af06fc4f458fd3bec9af6dced087dc8ce83

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/9aae874e08afafc808aa4f0ca3b5f45f6a916abe...03ff8af06fc4f458fd3bec9af6dced087dc8ce83
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221231/d59a88d4/attachment.htm>


More information about the debian-security-tracker-commits mailing list