(semi-)automatic unclaim of packages with more than 2 weeks of inactivity (and missing DLAs on www.do)

2020-12-28 Thread Holger Levsen
hi, today no packages were unclaimed for LTS, no packages were unclaimed for ELTS, noone claimed too many packages and there is just one DLAs which has been reserved but not yet been published: - DLA 2505-1 (23 Dec 2020) (spip) Whooohooo! Have a great week! -- cheers, Holger --

Re: roundcube: CVE-2020-35730: XSS vulnerability via malious HTML or plaintext messages

2020-12-28 Thread Guilhem Moulin
On Mon, 28 Dec 2020 at 12:10:46 +0530, Utkarsh Gupta wrote: > On Mon, Dec 28, 2020 at 8:28 AM Guilhem Moulin wrote: >> Debdiff tested and attached. I can upload if you'd like but would >> appreciate if you could take care of the DLA :-) > > Yes, please. I can take care of the DLA. Please feel fr

Re: roundcube: CVE-2020-35730: XSS vulnerability via malious HTML or plaintext messages

2020-12-28 Thread Utkarsh Gupta
Hi Guilhem, On Mon, Dec 28, 2020 at 4:48 PM Guilhem Moulin wrote: > > Yes, please. I can take care of the DLA. Please feel free to upload to > > stretch-security. > > Thank you Utkarsh, uploaded! Awesome, thank you for your proactive work on this! \o/ I've rolled out the DLA announcement and als