[Git][security-tracker-team/security-tracker][master] Reserve DLA-3387-1 for udisks2

Tobias Frost (@tobi) tobi at debian.org
Fri Apr 7 21:33:27 BST 2023



Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6f234607 by Tobias Frost at 2023-04-07T22:33:09+02:00
Reserve DLA-3387-1 for udisks2

- - - - -


3 changed files:

- data/CVE/list
- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -120265,7 +120265,6 @@ CVE-2021-3802 (A vulnerability found in udisks2. This flaw allows an attacker to
 	{DLA-2809-1}
 	- udisks2 2.9.4-1
 	[bullseye] - udisks2 2.9.2-2+deb11u1
-	[buster] - udisks2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2003649
 	NOTE: https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-045.txt
 	NOTE: https://github.com/storaged-project/udisks/commit/38d90a433bda0fc0f2a409f6baa12c3958893571 (udisks-2.9.4)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[07 Apr 2023] DLA-3387-1 udisks2 - security update
+	{CVE-2021-3802}
+	[buster] - udisks2 2.8.1-4+deb10u1
 [06 Apr 2023] DLA-3386-1 grunt - security update
 	{CVE-2022-0436}
 	[buster] - grunt 1.0.1-8+deb10u3


=====================================
data/dla-needed.txt
=====================================
@@ -292,10 +292,6 @@ tinymce
   NOTE: 20221227: Programming language: PHP.
   NOTE: 20230206: VCS: https://salsa.debian.org/lts-team/packages/tinymce.git
 --
-udisks2 (tobi)
-  NOTE: 20230404: Programming language: C, Python.
-  NOTE: 20230404: CVE-2021-3802 (kernel panic) fixed in all other dists (Debian 11.2, DLA-2809-1 for stretch) (Beuc/front-desk)
---
 wordpress (guilhem)
   NOTE: 20230302: Programming language: PHP.
   NOTE: 20230302: Testsuite: https://lts-team.pages.debian.net/wiki/TestSuites/wordpress.html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f234607e6d66367c782d6f02d7212fbacc679da

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f234607e6d66367c782d6f02d7212fbacc679da
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230407/df560418/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list