[Git][security-tracker-team/security-tracker][master] PHP, xorg-server

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sun Nov 13 18:28:27 GMT 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1c95f83e by Moritz Mühlenhoff at 2022-11-13T19:27:54+01:00
PHP, xorg-server

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -8453,7 +8453,6 @@ CVE-2022-3552 (Unrestricted Upload of File with Dangerous Type in GitHub reposit
 CVE-2022-3551 (A vulnerability, which was classified as problematic, has been found i ...)
 	{DLA-3185-1}
 	- xorg-server 2:21.1.4-3
-	[bullseye] - xorg-server <no-dsa> (Minor issue)
 	- xwayland <unfixed>
 	NOTE: https://gitlab.freedesktop.org/xorg/xserver/commit/18f91b950e22c2a342a4fbc55e9ddf7534a707d2
 CVE-2022-3550 (A vulnerability classified as critical was found in X.org Server. Affe ...)


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,9 @@
+[13 Nov 2022] DSA-5278-1 xorg-server - security update
+	{CVE-2022-3550 CVE-2022-3551}
+	[bullseye] - xorg-server 2:1.20.11-1+deb11u3
+[13 Nov 2022] DSA-5277-1 php7.4 - security update
+	{CVE-2022-31630 CVE-2022-37454}
+	[bullseye] - php7.4 7.4.33-1+deb11u1
 [12 Nov 2022] DSA-5276-1 pixman - security update
 	{CVE-2022-44638}
 	[bullseye] - pixman 0.40.0-1.1~deb11u1


=====================================
data/dsa-needed.txt
=====================================
@@ -35,8 +35,6 @@ multipath-tools
 --
 openexr
 --
-php7.4 (jmm)
---
 php-cas (jmm)
 --
 php-horde-mime-viewer
@@ -68,6 +66,3 @@ sox
 --
 tiff
 --
-xorg-server
-  Emilio (pochu) will work on debdiffs for bullseye
---



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c95f83e7d98fe97da48f70d84f845992a952808

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c95f83e7d98fe97da48f70d84f845992a952808
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221113/b18209b2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list