summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSylvain Beucler <beuc@beuc.net>2022-11-16 18:05:58 +0100
committerSylvain Beucler <beuc@beuc.net>2022-11-17 11:26:21 +0100
commit8b5fc30b8831244c51944c7e0dfb83748f33116c (patch)
tree88efe2df3e14b8479ad5726e6b17e1e0e2a29e8d
parentcd361a77192e5854890a6d2b1b6ccf22f0755030 (diff)
dla: clarify notes
-rw-r--r--data/dla-needed.txt4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index a4a2b1a78d..461a345507 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -18,7 +18,7 @@ android-platform-system-core
NOTE: 20221102: VCS: https://salsa.debian.org/lts-team/packages/android-platform-system-core.git
NOTE: 20221102: The package in buster is likely affected but since no known fix is available it is hard to tell without running the proof of concept code.
NOTE: 20221102: Consider ignoring this if Debian Security team see the CVEs as minor. (ola)
- NOTE: 20221103: Both PoCs (CVE-2022-20128 & CVE-2022-3168) work for me in buster (Beuc)
+ NOTE: 20221103: Both PoCs (CVE-2022-20128 & CVE-2022-3168) work for me in buster (Beuc/front-desk)
--
asterisk (Markus Koschany)
NOTE: 20220810: Programming language: C.
@@ -296,7 +296,7 @@ puppet-module-puppetlabs-mysql
qemu
NOTE: 20221108: Programming language: C.
NOTE: 20221108: I updated the status of all opened (minor) CVEs to more clearly state whether we can fix or are waiting for a patch,
- NOTE: 20221108: there's about half of them that can be fixed (or definitely ignored if we can't) (Beuc/front-desk)
+ NOTE: 20221108: there's about half of them that can be fixed now (or definitely ignored if backporting is too risky/complex) (Beuc/front-desk)
--
r-cran-commonmark
NOTE: 20221009: Programming language: R.

© 2014-2024 Faster IT GmbH | imprint | privacy policy