From ff3c833ff2492d3325da66f7bd09e4452cee468a Mon Sep 17 00:00:00 2001 From: Utkarsh Gupta Date: Wed, 18 May 2022 17:25:20 +0530 Subject: Reserve DLA-3014-1 for elog --- data/DLA/list | 3 +++ data/dla-needed.txt | 4 ---- 2 files changed, 3 insertions(+), 4 deletions(-) diff --git a/data/DLA/list b/data/DLA/list index 3e0da4c8f5..061df735d7 100644 --- a/data/DLA/list +++ b/data/DLA/list @@ -1,3 +1,6 @@ +[18 May 2022] DLA-3014-1 elog - security update + {CVE-2020-8659} + [stretch] - elog 3.1.2-1-1+deb9u1 [18 May 2022] DLA-3013-1 needrestart - security update {CVE-2022-30688} [stretch] - needrestart 2.11-3+deb9u2 diff --git a/data/dla-needed.txt b/data/dla-needed.txt index 2a9db5312d..8da1f63432 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -56,10 +56,6 @@ debian-security-support (Utkarsh) NOTE: 20220502: backport prepped, will contact Holger for more details. (utkarsh) NOTE: 20220516: in review, will also co-help Holger to maintain this. (utkarsh) -- -elog (Utkarsh) - NOTE: 20220517: Please check further. It looks like a denial of service can be triggered remotely without - NOTE: 20220517: authentication. If that is the case it should be fixed. If it cannot be triggered remotely then it can be postponed. --- exempi NOTE: 20220517: A lot of packages reverse depends on libexmpi8. Further analysis NOTE: 20220517: is needed. -- cgit v1.2.3