From f78e09f49af11a9694451bd3dc1792def408cca0 Mon Sep 17 00:00:00 2001 From: Sylvain Beucler Date: Mon, 27 Mar 2023 17:31:35 +0200 Subject: Reserve DLA-3369-1 for runc --- data/DLA/list | 2 ++ data/dla-needed.txt | 10 ---------- 2 files changed, 2 insertions(+), 10 deletions(-) (limited to 'data') diff --git a/data/DLA/list b/data/DLA/list index ae96dc09cc..43e727894a 100644 --- a/data/DLA/list +++ b/data/DLA/list @@ -1,3 +1,5 @@ +[27 Mar 2023] DLA-3369-1 runc - security update + [buster] - runc 1.0.0~rc6+dfsg1-3+deb10u2 [26 Mar 2023] DLA-3368-1 libreoffice - security update {CVE-2021-25636 CVE-2022-3140 CVE-2022-26305 CVE-2022-26306 CVE-2022-26307} [buster] - libreoffice 1:6.1.5-3+deb10u8 diff --git a/data/dla-needed.txt b/data/dla-needed.txt index d77c2f0de9..b7c5bd65ab 100644 --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -282,16 +282,6 @@ ruby-rails-html-sanitizer NOTE: 20221231: VCS: https://salsa.debian.org/lts-team/packages/ruby-rails-html-sanitizer.git NOTE: 20230303: this cannot be fixed unless ruby-loofah is fixed with appropriate methods. (utkarsh) -- -runc (Sylvain Beucler) - NOTE: 20220905: Programming language: Go. - NOTE: 20220905: Special attention: Sync with Bullseye. - NOTE: 20230206: VCS: https://salsa.debian.org/lts-team/packages/runc.git - NOTE: 20230213: Starting checking security issues, packaging strategy and testing procedures (Beuc) - NOTE: 20230218: golang-github-opencontainers-selinux fix uploaded via DLA-3322-1 (Beuc) - NOTE: 20230220: Checking possible re-introduction of CVE-2019-19921 with upstream (Beuc) - NOTE: 20230304: CVE-2023-27561 registered; give time for upstream to react, otherwise will publish a partial update (Beuc) - NOTE: 20230320: CVE-2023-27561 patch underway upstream (Beuc) --- salt NOTE: 20220814: Programming language: Python. NOTE: 20220814: Packages is not in the supported packages by us. -- cgit v1.2.3