[Git][security-tracker-team/security-tracker][master] booth, tryton DSAs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Sep 27 17:07:27 BST 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cb8c2b3b by Moritz Mühlenhoff at 2024-09-27T18:07:00+02:00
booth, tryton DSAs

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -1664,10 +1664,12 @@ CVE-2023-41610 (Victure PC420 1.1.39 was discovered to contain a hardcoded root
 	NOT-FOR-US: Victure
 CVE-2024-XXXX [get_groups does not always returns the group of the action]
 	- tryton-server 6.0.52-1
+	[bookworm] - tryton-server 6.0.29-2+deb12u3
 	NOTE: https://discuss.tryton.org/t/security-release-for-issues-13505-and-13506/7846
 	NOTE: https://foss.heptapod.net/tryton/tryton/-/issues/13506
 CVE-2024-XXXX [Access to records of report are not checked]
 	- tryton-server 6.0.52-1
+	[bookworm] - tryton-server 6.0.29-2+deb12u3
 	NOTE: https://discuss.tryton.org/t/security-release-for-issues-13505-and-13506/7846
 	NOTE: https://foss.heptapod.net/tryton/tryton/-/issues/13505
 CVE-2024-46801 (In the Linux kernel, the following vulnerability has been resolved:  l ...)


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,8 @@
+[27 Sep 2024] DSA-5777-1 booth - security update
+	{CVE-2024-3049}
+	[bookworm] - booth 1.0-283-g9d4029a-2+deb12u1
+[27 Sep 2024] DSA-5776-1 tryton-server - security update
+	[bookworm] - tryton-server 6.0.29-2+deb12u3
 [26 Sep 2024] DSA-5775-1 chromium - security update
 	{CVE-2024-9120 CVE-2024-9121 CVE-2024-9122 CVE-2024-9123}
 	[bookworm] - chromium 129.0.6668.70-1~deb12u1


=====================================
data/dsa-needed.txt
=====================================
@@ -14,9 +14,6 @@ If needed, specify the release by adding a slash after the name of the source pa
 --
 activemq
 --
-booth (jmm)
-  Adrian Bunk proposed an debdiff for review, cf. #1082674
---
 frr
   coordination with the maintainer ongoing
 --
@@ -46,8 +43,6 @@ smarty3
 --
 smarty4
 --
-tryton-server (jmm)
---
 twisted (jmm)
 --
 webkit2gtk (berto)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb8c2b3b329cf25cb28559a5b2d757396c19355d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb8c2b3b329cf25cb28559a5b2d757396c19355d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240927/6c28249d/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list