[Git][security-tracker-team/security-tracker][master] Reserve DLA-2875-1 for clamav
Emilio Pozuelo Monfort (@pochu)
pochu at debian.org
Mon Jan 10 16:42:55 GMT 2022
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c1a0af3e by Emilio Pozuelo Monfort at 2022-01-10T17:42:42+01:00
Reserve DLA-2875-1 for clamav
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,5 @@
+[10 Jan 2022] DLA-2875-1 clamav - security update
+ [stretch] - clamav 0.103.4+dfsg-0+deb9u1
[04 Jan 2022] DLA-2874-1 thunderbird - security update
{CVE-2021-4126 CVE-2021-38496 CVE-2021-38500 CVE-2021-38502 CVE-2021-38503 CVE-2021-38504 CVE-2021-38506 CVE-2021-38507 CVE-2021-38508 CVE-2021-38509 CVE-2021-43528 CVE-2021-43529 CVE-2021-43534 CVE-2021-43535 CVE-2021-43536 CVE-2021-43537 CVE-2021-43538 CVE-2021-43539 CVE-2021-43541 CVE-2021-43542 CVE-2021-43543 CVE-2021-43545 CVE-2021-43546 CVE-2021-44538}
[stretch] - thunderbird 1:91.4.1-1~deb9u1
=====================================
data/dla-needed.txt
=====================================
@@ -25,8 +25,6 @@ apng2gif
NOTE: 20211229: CVE-2017-6960 was fixed in DLAs for wheezy and jessie
NOTE: 20211229: but is unfixed in stretch, plus 2 additional CVEs (bunk)
--
-clamav (Emilio)
---
condor (Anton)
NOTE: 20211216: full details embargoed
NOTE: 20211227: the fix is out and now available; cf:
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1a0af3e525d37bd503622c418f1e3d0f8aea42e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1a0af3e525d37bd503622c418f1e3d0f8aea42e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220110/71961856/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list