Suggestions for handling of condor update

2020-07-12 Thread Roberto C . Sánchez
Hello all, Your feedback on the condor update situation (described below) would be appreciated. Several weeks ago I prepared updates for condor for jessie (then-LTS), stretch, and buster (the latter two still under the security team ubmrella) to address CVE-2019-18823. The description of the fix

ksh / CVE-2019-14868

2020-07-12 Thread Brian May
Is dla-needed.txt for Jessie or Stretch now? ksh was removed from dla-needed.txt for Stretch and classified "minor": https://salsa.debian.org/security-tracker-team/security-tracker/commit/87322fcf Then it was added again: https://salsa.debian.org/security-tracker-team/security-tracker/commit/59