From 560804eb3641bf21604ac48ce76341ee6e0ec49a Mon Sep 17 00:00:00 2001 From: Thorsten Alteholz Date: Fri, 27 May 2022 01:33:36 +0200 Subject: Reserve DLA-3028-1 for atftp --- data/CVE/list | 1 - data/DLA/list | 3 +++ data/dla-needed.txt | 3 --- 3 files changed, 3 insertions(+), 4 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index 6a634ff7eb..18240b5fdc 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -20829,7 +20829,6 @@ CVE-2021-46671 (options.c in atftp before 0.7.5 reads past the end of an array, - atftp 0.7.git20210915-1 (bug #1004974) [bullseye] - atftp 0.7.git20120829-3.3+deb11u2 [buster] - atftp 0.7.git20120829-3.2~deb10u3 - [stretch] - atftp (Minor issue) NOTE: https://sourceforge.net/p/atftp/code/ci/9cf799c40738722001552618518279e9f0ef62e5 (v0.7.5) CVE-2022-24407 (In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does ...) {DSA-5087-1 DLA-2931-1} diff --git a/data/DLA/list b/data/DLA/list index c60a073ea0..5b0ef379c8 100644 --- a/data/DLA/list +++ b/data/DLA/list @@ -1,3 +1,6 @@ +[27 May 2022] DLA-3028-1 atftp - security update + {CVE-2021-46671} + [stretch] - atftp 0.7.git20120829-3.1~deb9u3 [26 May 2022] DLA-3027-1 neutron - security update {CVE-2021-40085} [stretch] - neutron 2:9.1.1-3+deb9u3 diff --git a/data/dla-needed.txt b/data/dla-needed.txt index c6b87047dc..db37c00bfd 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -22,9 +22,6 @@ amd64-microcode asterisk (Abhijith PA) NOTE: 20220424: programming language C -- -atftp (Thorste Alteholz) - NOTE: 20220523: Harmonize with Debian 10.12 (1 CVE) (Beuc/front-desk) --- avahi NOTE: 20220523: Harmonize with Debian 10.9 (1 Debian-specific CVE) (Beuc/front-desk) -- -- cgit v1.2.3