From 531c5f045bc8087680907f525d76e2208f486d68 Mon Sep 17 00:00:00 2001 From: Markus Koschany Date: Mon, 30 Nov 2020 00:29:52 +0100 Subject: Update remaining status in dla-needed.txt --- data/dla-needed.txt | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/data/dla-needed.txt b/data/dla-needed.txt index 839e2b845f..84a73cf6e8 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -23,6 +23,9 @@ ansible (Markus Koschany) NOTE: 20200508: bam: Upstream fix was to use 660 - https://github.com/ansible/ansible/pull/68970 NOTE: 20200508: bam: Upstream fix was reverted - https://github.com/ansible/ansible/pull/68983 NOTE: 20200508: bam: See https://github.com/ansible/ansible/issues/67794 + NOTE: 20201130: apo: I believe a partial update makes sense at the moment. + NOTE: 20201130: Not everything is clear and obvious thus fixing some CVE is + NOTE: 20201130: better than continue to ignore all of them. -- brotli (Roberto C. Sánchez) NOTE: 20201025: Requested patch review on debian-lts@l.d.o (roberto) @@ -107,6 +110,8 @@ openldap (Utkarsh) -- pacemaker (Markus Koschany) NOTE: 20201117: See #974563 for further information. + NOTE: 20201130: I will ask the other bug reporters for feedback and testing + NOTE: 20201130: in #974563. The update itself looks good to me. -- pdfresurrect -- @@ -171,6 +176,8 @@ spip vips (Adrian Bunk) -- webcit (Markus Koschany) + NOTE: 20201130: Requested more information from upstream. Currently patches + NOTE: or workarounds are not available. -- wireshark NOTE: 20201007: during last triage, I marked some CVEs as no-dsa, it'd be great to include -- cgit v1.2.3