[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity
Roberto C. Sánchez (@roberto)
roberto at debian.org
Mon May 26 14:42:33 BST 2025
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
bfa78741 by Roberto C. Sánchez at 2025-05-26T09:40:51-04:00
semi-automatic unclaim after 2 weeks of inactivity
Signed-off-by: Roberto C. Sánchez <roberto at debian.org>
- - - - -
1 changed file:
- data/dla-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -28,7 +28,7 @@ rather than remove/replace existing ones.
activemq (eamanu)
NOTE: 20250515: Added by Front-Desk (apo)
--
-adminer (Utkarsh)
+adminer
NOTE: 20250410: Added by Front-Desk (Beuc)
NOTE: 20250507: Utkarsh prepared ELTS update and couldn't fully work on LTS last month
NOTE: 20250507: as he had no hours for LTS but will release the updates to LTS first
@@ -82,7 +82,7 @@ dnsdist
NOTE: 20250521: Added by Front-Desk (Beuc)
NOTE: 20250521: Also fix postponed issue (Beuc/front-desk)
--
-edk2 (Markus Koschany)
+edk2
NOTE: 20240815: Added by Front-Desk (Beuc)
NOTE: 20240815: bullseye did not get most of DSA 5624-1 security fixes,
NOTE: 20240815: (10 ipv6-related, postponed CVEs), plus there are older postponed vulnerabilities (Beuc/front-desk)
@@ -227,7 +227,7 @@ libstring-compare-constanttime-perl
NOTE: 20250430: with it. At least not until we have either decided to revert the patch landing in trixie or accept
NOTE: 20250430: it. Context in https://github.com/hoytech/String-Compare-ConstantTime/pull/21
--
-libxmltok (Thorsten Alteholz)
+libxmltok
NOTE: 20250421: Added by Front-Desk (ta)
NOTE: 20250421: Also review all other expat CVEs. (bunk)
NOTE: 20250421: Fixing the expat copy in xmlrpc-c at the same time would make sense. (bunk)
@@ -352,7 +352,7 @@ php-horde-css-parser
php-laravel-framework
NOTE: 20250307: Added by Front-Desk (rouca)
--
-php-twig (Markus Koschany)
+php-twig
NOTE: 20250209: Added by Front-Desk (apo)
NOTE: 20250209: Vulnerable code is in src/Node/Expression/NullCoalesceExpression.php (apo)
NOTE: 20250511: I could not fix CVE-2025-24374 and CVE-2024-51755 but will
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfa787414a03c298e92caa2de742726171386e19
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfa787414a03c298e92caa2de742726171386e19
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250526/c10a7f4d/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list