From 99d908123d594afc1aefe66139c866fbd10d1687 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Moritz=20M=C3=BChlenhoff?= Date: Mon, 4 Jul 2022 20:56:11 +0200 Subject: blender, thunderbird DSA --- data/DSA/list | 8 ++++++++ data/dsa-needed.txt | 4 ---- 2 files changed, 8 insertions(+), 4 deletions(-) diff --git a/data/DSA/list b/data/DSA/list index b811fe0de7..9adf2617ec 100644 --- a/data/DSA/list +++ b/data/DSA/list @@ -1,3 +1,11 @@ +[04 Jul 2022] DSA-5176-1 blender - security update + {CVE-2022-0544 CVE-2022-0545 CVE-2022-0546} + [buster] - blender 2.79.b+dfsg0-7+deb10u1 + [bullseye] - blender 2.83.5+dfsg-5+deb11u1 +[04 Jul 2022] DSA-5175-1 thunderbird - security update + {CVE-2022-2200 CVE-2022-2226 CVE-2022-31744 CVE-2022-34468 CVE-2022-34470 CVE-2022-34472 CVE-2022-34479 CVE-2022-34481 CVE-2022-34484} + [buster] - thunderbird 1:91.11.0-1~deb10u1 + [bullseye] - thunderbird 1:91.11.0-1~deb11u1 [03 Jul 2022] DSA-5174-1 gnupg2 - security update {CVE-2022-34903} [buster] - gnupg2 2.2.12-1+deb10u2 diff --git a/data/dsa-needed.txt b/data/dsa-needed.txt index 355ba79441..6f715a43e1 100644 --- a/data/dsa-needed.txt +++ b/data/dsa-needed.txt @@ -14,8 +14,6 @@ If needed, specify the release by adding a slash after the name of the source pa -- asterisk -- -blender (jmm) --- curl -- epiphany-browser @@ -60,8 +58,6 @@ slurm-llnl/oldstable sox patch needed for CVE-2021-40426, check with upstream -- -thunderbird (jmm) --- unzip unclear information, initial report indicates writable memory corruption, but some identified patch is just for a NULL deref, needs more clarification -- cgit v1.2.3