summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorAdrian Bunk <bunk@debian.org>2021-11-30 23:32:43 +0000
committerAdrian Bunk <bunk@debian.org>2021-11-30 23:32:43 +0000
commit14d5917350b96adbe835c90c8f9af6c18292da47 (patch)
tree2a44a737c2bc24bfb22615f701e29ad49c4826cf
parentfae8396c3147aab883940da1b74fed4da291307b (diff)
Reserve DLA-2835-1 for rsyslog
-rw-r--r--data/CVE/2019.list2
-rw-r--r--data/DLA/list3
-rw-r--r--data/dla-needed.txt2
3 files changed, 3 insertions, 4 deletions
diff --git a/data/CVE/2019.list b/data/CVE/2019.list
index ad20c773c5..fcbc14737c 100644
--- a/data/CVE/2019.list
+++ b/data/CVE/2019.list
@@ -10180,13 +10180,11 @@ CVE-2019-17042 (An issue was discovered in Rsyslog v8.1908.0. contrib/pmcisconam
{DLA-1952-1}
- rsyslog 8.1910.0-1 (bug #942065)
[buster] - rsyslog <no-dsa> (Minor issue, pmcisconames module not loaded by default)
- [stretch] - rsyslog <no-dsa> (Minor issue, pmcisconames module not loaded by default)
NOTE: https://github.com/rsyslog/rsyslog/pull/3883
CVE-2019-17041 (An issue was discovered in Rsyslog v8.1908.0. contrib/pmaixforwardedfr ...)
{DLA-1952-1}
- rsyslog 8.1910.0-1 (bug #942067)
[buster] - rsyslog <no-dsa> (Minor issue, pmaixforwardedfrom module not loaded by default)
- [stretch] - rsyslog <no-dsa> (Minor issue, pmaixforwardedfrom module not loaded by default)
NOTE: https://github.com/rsyslog/rsyslog/pull/3884
CVE-2019-17040 (contrib/pmdb2diag/pmdb2diag.c in Rsyslog v8.1908.0 allows out-of-bound ...)
- rsyslog 8.1910.0-1 (unimportant)
diff --git a/data/DLA/list b/data/DLA/list
index ea207a58cb..9b1043650d 100644
--- a/data/DLA/list
+++ b/data/DLA/list
@@ -1,3 +1,6 @@
+[30 Nov 2021] DLA-2835-1 rsyslog - security update
+ {CVE-2019-17041 CVE-2019-17042}
+ [stretch] - rsyslog 8.24.0-1+deb9u1
[30 Nov 2021] DLA-2834-1 uriparser - security update
{CVE-2018-20721}
[stretch] - uriparser 0.8.4-1+deb9u2
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index 2ea6719cdd..2fbb7b0e49 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -84,8 +84,6 @@ puppet
--
roundcube (Markus Koschany)
--
-rsyslog (Adrian Bunk)
---
rustc (Roberto C. Sánchez)
NOTE: rust-doc in stretch-lts (and jessie-lts) is not installable
NOTE: https://bugs.debian.org/928422

© 2014-2024 Faster IT GmbH | imprint | privacy policy