[Git][security-tracker-team/security-tracker][master] blender, thunderbird DSA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Jul 4 19:56:52 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
99d90812 by Moritz Mühlenhoff at 2022-07-04T20:56:11+02:00
blender, thunderbird DSA

- - - - -


2 changed files:

- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/DSA/list
=====================================
@@ -1,3 +1,11 @@
+[04 Jul 2022] DSA-5176-1 blender - security update
+	{CVE-2022-0544 CVE-2022-0545 CVE-2022-0546}
+	[buster] - blender 2.79.b+dfsg0-7+deb10u1
+	[bullseye] - blender 2.83.5+dfsg-5+deb11u1
+[04 Jul 2022] DSA-5175-1 thunderbird - security update
+	{CVE-2022-2200 CVE-2022-2226 CVE-2022-31744 CVE-2022-34468 CVE-2022-34470 CVE-2022-34472 CVE-2022-34479 CVE-2022-34481 CVE-2022-34484}
+	[buster] - thunderbird 1:91.11.0-1~deb10u1
+	[bullseye] - thunderbird 1:91.11.0-1~deb11u1
 [03 Jul 2022] DSA-5174-1 gnupg2 - security update
 	{CVE-2022-34903}
 	[buster] - gnupg2 2.2.12-1+deb10u2


=====================================
data/dsa-needed.txt
=====================================
@@ -14,8 +14,6 @@ If needed, specify the release by adding a slash after the name of the source pa
 --
 asterisk
 --
-blender (jmm)
---
 curl
 --
 epiphany-browser
@@ -60,8 +58,6 @@ slurm-llnl/oldstable
 sox
   patch needed for CVE-2021-40426, check with upstream
 --
-thunderbird (jmm)
---
 unzip
   unclear information, initial report indicates writable memory corruption, but
   some identified patch is just for a NULL deref, needs more clarification



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/99d908123d594afc1aefe66139c866fbd10d1687

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/99d908123d594afc1aefe66139c866fbd10d1687
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220704/2b621c54/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list