From 5ef3c55c86749c0e0ffcf00c80bf26c5664145e6 Mon Sep 17 00:00:00 2001 From: Sylvain Beucler Date: Mon, 6 Jul 2020 16:56:49 +0200 Subject: dla: add package updates planned by security team before the oldstable->LTS switch Cf. deb5b9dbbc3582d46df280607e6700f551dcb7e3 --- data/dla-needed.txt | 9 +++++++++ 1 file changed, 9 insertions(+) (limited to 'data') diff --git a/data/dla-needed.txt b/data/dla-needed.txt index bd5e3f6449..dc05067e02 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -51,10 +51,16 @@ gupnp imagemagick (Markus Koschany) NOTE: 20200622: Ongoing work -- +jruby + NOTE: 20200706: all open CVEs were fixed in jessie (Beuc) +-- linux (Ben Hutchings) -- linux-4.9 (Ben Hutchings) -- +mercurial + NOTE: 20200706: all open CVEs were fixed in jessie (Beuc) +-- mumble NOTE: 20200325: Regression in last upload, forgot to follow up. NOTE: 20200325: https://github.com/mumble-voip/mumble/issues/3605 (abhijith) @@ -67,6 +73,9 @@ net-snmp nginx NOTE: 20200505: Patch for CVE-2020-11724 appears to be fairly invasive and, alas, no tests. (lamby) -- +nss + NOTE: 20200706: from dsa-needed.txt: Roberto proposed an update including fixes for CVE-2018-12404 and CVE-2018-18508 (Beuc) +-- opendmarc NOTE: 20200621: testing package (thorsten) -- -- cgit v1.2.3