Debian LTS report for January 2023

2023-02-20 Thread Lee Garrett
In January I worked on the following issues for apache2: - CVE-2006-20001 - CVE-2022-36760 - CVE-2022-37436 (WIP) Thanks to the sponsors for financing this work, and to Freexian for coordinating! Regards, Lee

LTS report for January 2023

2023-02-03 Thread Adrian Bunk
DLAs released: DLA-3292-1 sofia-sip CVE-2023-22741 DLA-3304-1 fig2dev CVE-2020-21529 CVE-2020-21531 CVE-2020-21532 CVE-2020-21676 CVE-2021-32280 DLA-3305-1 libstb CVE-2018-16981 CVE-2019-13217 CVE-2019-13218 CVE-2019-13219 CVE-2019-13220 CVE-2019-13221 CVE-2019-13222 CVE-2019-13223 CVE-2021-2802

Debian LTS report for January 2023

2023-02-01 Thread Guilhem Moulin
During the month of January 2023 and on behalf of Freexian, I worked on the following: * DLA-3270-1: net-snmp 5.7.3+dfsg-5+deb10u4 CVE-2022-44793 and CVE-2022-44792 https://lists.debian.org/msgid-search/Y8Nreff/4mms8...@debian.org * DLA-3271-1: node-minimatch 3.0.4-3+deb10u1 CVE-2

(E)LTS report for January 2023

2023-01-31 Thread Tobias Frost
I've worked during January 2023 on the below listed packages, for Freexian LTS/ELTS [1] Many thanks to Freexian and our sponsors [2] for providing this opportunity! LTS: - liapreq2: DLA-3269-1 (CVE-2022-22728) - libde265: DLA-3260-1 (see ELA for CVE list) - modsecurity-apache: DLA-3280-1