From 279d7b4c7a14c6e0e29e3f70c213c5deb48c753d Mon Sep 17 00:00:00 2001 From: Emilio Pozuelo Monfort Date: Sun, 16 Jan 2022 11:53:54 +0100 Subject: Reserve DLA-2880-1 for firefox-esr --- data/DLA/list | 3 +++ data/dla-needed.txt | 2 -- 2 files changed, 3 insertions(+), 2 deletions(-) diff --git a/data/DLA/list b/data/DLA/list index 9b9b238d48..dbf33637c9 100644 --- a/data/DLA/list +++ b/data/DLA/list @@ -1,3 +1,6 @@ +[16 Jan 2022] DLA-2880-1 firefox-esr - security update + {CVE-2021-4140 CVE-2022-22737 CVE-2022-22738 CVE-2022-22739 CVE-2022-22740 CVE-2022-22741 CVE-2022-22742 CVE-2022-22743 CVE-2022-22745 CVE-2022-22747 CVE-2022-22748 CVE-2022-22751} + [stretch] - firefox-esr 91.5.0esr-1~deb9u1 [14 Jan 2022] DLA-2879-1 ghostscript - security update {CVE-2021-45944 CVE-2021-45949} [stretch] - ghostscript 9.26a~dfsg-0+deb9u8 diff --git a/data/dla-needed.txt b/data/dla-needed.txt index 3f059447f8..26214b9d01 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -36,8 +36,6 @@ debian-archive-keyring -- expat (Markus Koschany) -- -firefox-esr (Emilio) --- firmware-nonfree (Markus Koschany) NOTE: 20210731: WIP: https://salsa.debian.org/lts-team/packages/firmware-nonfree NOTE: 20210828: Most CVEs are difficult to backport. Contacted Ben regarding possible "ignore" tag -- cgit v1.2.3