[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity
Roberto C. Sánchez (@roberto)
roberto at debian.org
Mon May 20 15:11:49 BST 2024
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
96cf8bf6 by Roberto C. Sánchez at 2024-05-20T10:09:34-04:00
semi-automatic unclaim after 2 weeks of inactivity
Signed-off-by: Roberto C. Sánchez <roberto at connexer.com>
- - - - -
1 changed file:
- data/dla-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -21,7 +21,7 @@ To make it easier to see the entire history of an update, please append notes
rather than remove/replace existing ones.
--
-ansible (Lee Garrett)
+ansible
NOTE: 20231202: Added by Front-Desk (Beuc)
NOTE: 20231202: Supported package, but there's a CVE backlog, and no updates since 2021
NOTE: 20231202: (neither in LTS nor in stable/oldstable), so this is an opportunity to
@@ -91,7 +91,7 @@ edk2
NOTE: 20231230: CVE-2019-11098 fixed via bullseye 11.2 (lamby)
NOTE: 20240312: CVE-2023-48733 fixed via DSA-5624-1 (Beuc/front-desk)
--
-firmware-nonfree (tobi)
+firmware-nonfree
NOTE: 20240502: Added by Front-Desk (Beuc)
--
freeimage
@@ -135,7 +135,7 @@ jenkins-htmlunit-core-js
NOTE: 20231231: … TransformerFactory without setting the ~secure flag, so it may
NOTE: 20231231: … indeed be vulnerable. (lamby)
--
-less (Abhijith PA)
+less
NOTE: 20240418: Added by Front-Desk (apo)
NOTE: 20240506: Pushed CVE-2022-48624 fix to git repo. (abhijith)
--
@@ -228,7 +228,7 @@ pdns-recursor
NOTE: 20240306: Added by Front-Desk (opal)
NOTE: 20240319: Upload postponed due to #1067124 (dleidert)
--
-putty (rouca)
+putty
NOTE: 20231224: Added by Front-Desk (ta)
NOTE: 20240104: massive code change against bullseye. May be better to backport bullseye (rouca)
NOTE: 20240324: Backport is straighforward (rouca)
@@ -264,11 +264,11 @@ ring
NOTE: 20230903: Added by Front-Desk (gladk)
NOTE: 20230928: will be likely hard to fix see https://lists.debian.org/debian-lts/2023/09/msg00035.html (rouca)
--
-ruby2.5 (utkarsh)
+ruby2.5
NOTE: 20240504: Added by Front-Desk (Beuc)
NOTE: 20240504: Follow DSA-5677-1 (Beuc/front-desk)
--
-runc (dleidert)
+runc
NOTE: 20240312: Added by coordinator (roberto)
NOTE: 20240314: Several CVEs fixed in LTS remain unfixed (no-dsa) in bullseye.
NOTE: 20240314: Uploads to ospu should be coordinated. (roberto)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96cf8bf6d295d8fe7900965e332625a668454cc4
--
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96cf8bf6d295d8fe7900965e332625a668454cc4
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240520/725fda33/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list