From 9bc04ae42c3d83685880763054fbbab47b42d5e1 Mon Sep 17 00:00:00 2001 From: Chris Lamb Date: Thu, 23 Jun 2022 08:37:42 +0100 Subject: Reserve DLA-3057-1 for request-tracker4 --- data/CVE/list | 1 - data/DLA/list | 3 +++ data/dla-needed.txt | 4 ---- 3 files changed, 3 insertions(+), 5 deletions(-) diff --git a/data/CVE/list b/data/CVE/list index e0739c00c6..5f59d72024 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -60226,7 +60226,6 @@ CVE-2021-38562 (Best Practical Request Tracker (RT) 4.2 before 4.2.17, 4.4 befor - request-tracker4 4.4.4+dfsg-3 (bug #995175) [bullseye] - request-tracker4 4.4.4+dfsg-2+deb11u1 [buster] - request-tracker4 4.4.3-2+deb10u1 - [stretch] - request-tracker4 (Minor issue) NOTE: https://github.com/bestpractical/rt/commit/70749bb66cb13dd70bd53340c371038a5f3ca57c (rt-5.0.2) NOTE: https://github.com/bestpractical/rt/commit/d16f8cf13c2af517ee55a85e7b91a0267477189f (rt-4.4.5) NOTE: https://github.com/bestpractical/rt/commit/d16f8cf13c2af517ee55a85e7b91a0267477189f (rt-4.2.17) diff --git a/data/DLA/list b/data/DLA/list index 1a9a15852c..30033970ed 100644 --- a/data/DLA/list +++ b/data/DLA/list @@ -1,3 +1,6 @@ +[23 Jun 2022] DLA-3057-1 request-tracker4 - security update + {CVE-2021-38562} + [stretch] - request-tracker4 4.4.1-3+deb9u4 [22 Jun 2022] DLA-3056-1 exo - security update {CVE-2022-32278} [stretch] - exo 0.10.7-1+deb9u1 diff --git a/data/dla-needed.txt b/data/dla-needed.txt index 2a792a695a..927a9d5b9f 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -249,10 +249,6 @@ qemu (Abhijith PA) NOTE: 20220527: a few new CVEs since last DLA, and buster got no updates since 2 years, NOTE: 20220527: so maybe coordinate to start anticipating the next LTS (Beuc/front-desk) -- -request-tracker4 (Chris Lamb) - NOTE: 20220529: Programming language: Perl. - NOTE: 20220524: Follow buster: harmonize with with Debian 10.11 (1 CVE) (Beuc/front-desk) --- ring NOTE: 20220529: Programming language: C++. NOTE: 20220314: https://people.debian.org/~abhijith/upload/vda/ring_20161221.2.7bd7d91~dfsg1-1+deb9u2.dsc -- cgit v1.2.3