[Git][security-tracker-team/security-tracker][master] Update packaeg meta information in dla-needed.txt
Anton Gladky (@gladk)
gladk at debian.org
Mon Nov 7 06:09:17 GMT 2022
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e75eaccc by Anton Gladky at 2022-11-07T07:09:02+01:00
Update packaeg meta information in dla-needed.txt
- - - - -
1 changed file:
- data/dla-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -15,6 +15,7 @@ rather than remove/replace existing ones.
--
android-platform-system-core
NOTE: 20221102: Programming language: C++.
+ NOTE: 20221102: VCS: https://salsa.debian.org/lts-team/packages/android-platform-system-core.git
NOTE: 20221102: The package in buster is likely affected but since no known fix is available it is hard to tell without running the proof of concept code.
NOTE: 20221102: Consider ignoring this if Debian Security team see the CVEs as minor. (ola)
NOTE: 20221103: Both PoCs (CVE-2022-20128 & CVE-2022-3168) work for me in buster (Beuc)
@@ -297,6 +298,8 @@ webkit2gtk
NOTE: 20221105: Programming language: C++.
--
xorg-server
+ NOTE: 20221106: Programming language: C.
+ NOTE: 20221106: VCS: https://salsa.debian.org/lts-team/packages/xorg-server.git
--
zabbix
NOTE: 20220911: At least CVE-2022-23134 was fixed in stretch so it should be fixed in buster too.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e75eaccc3b8c8ae793c152f8344ad1a3e8e55b6a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e75eaccc3b8c8ae793c152f8344ad1a3e8e55b6a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221107/99d1e563/attachment.htm>
More information about the debian-security-tracker-commits
mailing list