Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Mark CVE-2023-3640 as ignored in all suites | Ben Hutchings | 2024-03-11 | 1 | -8/+8 | |
| | | | | | This issue seems to be a known and unfixable limitation to Meltdown mitigation on x86. | |||||
* | Record various issues as already fixed upstream | Ben Hutchings | 2024-03-11 | 9 | -31/+45 | |
| | ||||||
* | Track fixes included in 6.7.9-1 upload | Salvatore Bonaccorso | 2024-03-08 | 1 | -1/+1 | |
| | ||||||
* | Two CVEs got rejected | Salvatore Bonaccorso | 2024-03-08 | 2 | -33/+0 | |
| | ||||||
* | Remove CVE-2023-52592 (rejected) | Salvatore Bonaccorso | 2024-03-07 | 1 | -15/+0 | |
| | ||||||
* | More information on CVE-2024-26621 | Salvatore Bonaccorso | 2024-03-06 | 1 | -4/+5 | |
| | ||||||
* | Update information for CVE-2024-26621 | Salvatore Bonaccorso | 2024-03-06 | 1 | -3/+3 | |
| | ||||||
* | Track fixes in 6.7.9, 6.6.21, 6.1.81 and 5.10.212 | Salvatore Bonaccorso | 2024-03-06 | 1 | -4/+4 | |
| | ||||||
* | Retire some CVEs | Salvatore Bonaccorso | 2024-03-06 | 3 | -0/+0 | |
| | ||||||
* | Add new batch of CVEs | Salvatore Bonaccorso | 2024-03-06 | 31 | -0/+470 | |
| | ||||||
* | Remove CVE-2023-52521 | Salvatore Bonaccorso | 2024-03-06 | 1 | -15/+0 | |
| | ||||||
* | Add two new assigned CVEs | Salvatore Bonaccorso | 2024-03-05 | 2 | -0/+33 | |
| | | | | | | The detection for sid worked not well in both cases and for CVE-2022-48630 needed adjustment to one lower version 5.17.11-1 (from 5.18.2-1) and for CVE-2022-48629 to 5.16.18-1 (from 5.17.3-1). | |||||
* | Retire resolved CVEs | Salvatore Bonaccorso | 2024-03-04 | 23 | -0/+0 | |
| | ||||||
* | Add new batch of assigned CVEs | Salvatore Bonaccorso | 2024-03-04 | 27 | -0/+433 | |
| | ||||||
* | Remove CVE-2023-52579 (rejected, duplicate) | Salvatore Bonaccorso | 2024-03-04 | 1 | -16/+0 | |
| | ||||||
* | Add one assigned CVE | Salvatore Bonaccorso | 2024-03-04 | 1 | -0/+16 | |
| | ||||||
* | Manual fixup of note section for CVE-2023-52562 | Salvatore Bonaccorso | 2024-03-03 | 1 | -3/+3 | |
| | | | | Signed-off-by: Salvatore Bonaccorso <carnil@debian.org> | |||||
* | Remove one rejected CVE | Salvatore Bonaccorso | 2024-03-03 | 1 | -16/+0 | |
| | ||||||
* | Retire several CVEs | Salvatore Bonaccorso | 2024-03-03 | 43 | -0/+0 | |
| | ||||||
* | Add new batch of CVEs | Salvatore Bonaccorso | 2024-03-03 | 61 | -0/+973 | |
| | ||||||
* | Track fixes in 6.7.7-1 upload to unstable | Salvatore Bonaccorso | 2024-03-02 | 15 | -36/+44 | |
| | ||||||
* | Retire CVEs | Salvatore Bonaccorso | 2024-03-01 | 24 | -0/+0 | |
| | ||||||
* | Add new assigned CVEs | Salvatore Bonaccorso | 2024-03-01 | 13 | -0/+208 | |
| | | | | | | | | | | Key issue remaining is yet to find the correct version in unstable due to branching for a release. Up to now the script will otherwise mark 5.10.40-1 as fixed in the bullseye branch, which is not correct as this was before the branching point and at same point mark an experimental version for the fix in sid. The rest seems to work reasonable now but will need a review later. | |||||
* | Update CVEs after 5.10.211, 6.1.80, 6.6.19 and 6.7.7 release | Salvatore Bonaccorso | 2024-03-01 | 4 | -9/+15 | |
| | ||||||
* | Add more CVEs as assigned | Salvatore Bonaccorso | 2024-03-01 | 15 | -0/+244 | |
| | ||||||
* | Add three more CVEs | Salvatore Bonaccorso | 2024-02-29 | 3 | -0/+50 | |
| | ||||||
* | Retire CVEs | Salvatore Bonaccorso | 2024-02-29 | 11 | -0/+0 | |
| | ||||||
* | Add new batch of CVEs from Kernel vulns repository | Salvatore Bonaccorso | 2024-02-29 | 28 | -0/+449 | |
| | ||||||
* | Retire CVEs | Salvatore Bonaccorso | 2024-02-29 | 76 | -0/+0 | |
| | ||||||
* | Add new batch of CVEs | Salvatore Bonaccorso | 2024-02-29 | 10 | -0/+151 | |
| | | | | | | | This import required only one manual fixup to mark the 6.6-upstream-stable as N/A. Peer review taking just some random CVEs to review would be welcome. | |||||
* | Add batch of CVEs | Salvatore Bonaccorso | 2024-02-28 | 86 | -0/+1392 | |
| | ||||||
* | Update with improved version | Salvatore Bonaccorso | 2024-02-28 | 1 | -0/+3 | |
| | ||||||
* | Retire some CVEs | Salvatore Bonaccorso | 2024-02-28 | 6 | -48/+0 | |
| | ||||||
* | Add batch of CVEs | Salvatore Bonaccorso | 2024-02-28 | 6 | -0/+96 | |
| | ||||||
* | Retire several CVEs | Salvatore Bonaccorso | 2024-02-28 | 34 | -0/+0 | |
| | ||||||
* | Add CVE-2021-4695{6,7,8} | Salvatore Bonaccorso | 2024-02-27 | 3 | -0/+48 | |
| | ||||||
* | Add batch of CVEs from linux-cve-announce | Salvatore Bonaccorso | 2024-02-27 | 33 | -0/+535 | |
| | ||||||
* | Retire CVEs fixed everywhere | Salvatore Bonaccorso | 2024-02-27 | 28 | -0/+0 | |
| | ||||||
* | Fix typo in N/A reason | Salvatore Bonaccorso | 2024-02-27 | 1 | -5/+5 | |
| | ||||||
* | Add batch of Linux CVEs | Salvatore Bonaccorso | 2024-02-27 | 23 | -0/+366 | |
| | | | | | | | There are still manual fixups for the unstable versions and to mark upper versions as N/A "Fixed before branching point" but at this point for stable series detection of fixed version in a -security branch should mostly work (famous last words ...) | |||||
* | Add batch of Linux CVEs | Salvatore Bonaccorso | 2024-02-27 | 8 | -0/+131 | |
| | ||||||
* | Remove CVE-2019-25161 | Salvatore Bonaccorso | 2024-02-27 | 1 | -15/+0 | |
| | ||||||
* | Retire CVEs covered in all supported branches | Salvatore Bonaccorso | 2024-02-26 | 4 | -0/+0 | |
| | ||||||
* | Add some CVEs | Salvatore Bonaccorso | 2024-02-26 | 6 | -0/+95 | |
| | ||||||
* | Add CVE-2024-26606 | Salvatore Bonaccorso | 2024-02-26 | 1 | -0/+16 | |
| | ||||||
* | Update CVE-2024-26602 as released in 6.8-rc6 | Salvatore Bonaccorso | 2024-02-26 | 1 | -1/+1 | |
| | ||||||
* | Fix another fallout for version determination | Salvatore Bonaccorso | 2024-02-25 | 1 | -2/+2 | |
| | ||||||
* | Retire all recent assigned CVEs already fixed everywhere | Salvatore Bonaccorso | 2024-02-25 | 3 | -0/+0 | |
| | ||||||
* | Add batch of Linux CVEs | Salvatore Bonaccorso | 2024-02-25 | 3 | -0/+47 | |
| | | | | | | | | This round did not work very well with some automatism added. In particular it showed that commits with no Fixes tag and when it was fixed in a relatively old/ancient version already but backported in very vew stable series (e.g. only in 4.19.y still relevant) then it fails. More work is required but gives another set of CVEs to handle. | |||||
* | Retire some CVEs | Salvatore Bonaccorso | 2024-02-25 | 7 | -0/+0 | |
| |