[Git][security-tracker-team/security-tracker][master] Add note on sarg-reports using mktemp in own Debian shipped version

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b776f749 by Salvatore Bonaccorso at 2020-01-21T08:06:52+01:00 Add note on sarg-reports using mktemp in own Debian shipped version - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-14888/undertow

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 37e3e4b3 by Salvatore Bonaccorso at 2020-01-21T07:59:52+01:00 Add CVE-2019-14888/undertow - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Some more CVE fixes were cherry-picked for 4.9.210-1 upload

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b1114183 by Salvatore Bonaccorso at 2020-01-21T07:51:29+01:00 Some more CVE fixes were cherry-picked for 4.9.210-1 upload - - - - - 1 changed file: - data/next-oldstable-point-update.txt

[Git][security-tracker-team/security-tracker][master] CVE-2019-18932/sarg

2020-01-20 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 66a5c1e2 by Henri Salo at 2020-01-21T08:46:12+02:00 CVE-2019-18932/sarg - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track pending CVEs for linux via stretch-pu

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7337fb94 by Salvatore Bonaccorso at 2020-01-21T07:24:57+01:00 Track pending CVEs for linux via stretch-pu - - - - - 1 changed file: - data/next-oldstable-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-16239/openconnect

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 662fe38a by Salvatore Bonaccorso at 2020-01-21T06:42:23+01:00 Add fixed version for CVE-2019-16239/openconnect - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Added information about the squid3 patch analysis made.

2020-01-20 Thread Ola Lundqvist
makes it impossible isolate the minimal change that NOTE: 20200116: addresses the vulnerabilities. (roberto) + NOTE: 20200120: CVE-2019-12523 It looks like the only new checks is the introduction of NID + NOTE: 20200120: checks in parseUrn. This function replaces parseFinish. It should

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for openconnect update

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f4f38592 by Salvatore Bonaccorso at 2020-01-20T21:25:19+01:00 Reserve DSA number for openconnect update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d6638748 by security tracker role at 2020-01-20T20:10:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] still working on tomcat8 in jessie

2020-01-20 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 7bfe0afe by Abhijith PA at 2020-01-21T00:48:49+05:30 still working on tomcat8 in jessie - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-18899/apt-cacher-ng

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9d8a230f by Salvatore Bonaccorso at 2020-01-20T19:03:16+01:00 Add CVE-2019-18899/apt-cacher-ng - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-01-20 Thread Holger Levsen
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker Commits: 9125a615 by Holger Levsen at 2020-01-20T18:57:30+01:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Holger Levsen hol...@layer-acht.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add and claim storebackup

2020-01-20 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 41693fa2 by Utkarsh Gupta at 2020-01-20T23:23:38+05:30 Add and claim storebackup - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-7040/storebackup

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: caf07d44 by Salvatore Bonaccorso at 2020-01-20T17:36:55+01:00 Add Debian bug reference for CVE-2020-7040/storebackup - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-7040/storebackup

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 61cdcd7d by Salvatore Bonaccorso at 2020-01-20T17:21:53+01:00 Add CVE-2020-7040/storebackup - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add fixed version via unstable for CVE-2019-5477/rexical

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 55ab601d by Salvatore Bonaccorso at 2020-01-20T17:13:18+01:00 Add fixed version via unstable for CVE-2019-5477/rexical - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference commits for CVE-2019-1579{5,6}/python-apt

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 477e90c4 by Salvatore Bonaccorso at 2020-01-20T16:22:16+01:00 Reference commits for CVE-2019-1579{5,6}/python-apt - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Remove no-dsa tagged entries which got an update

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d5def294 by Salvatore Bonaccorso at 2020-01-20T16:15:05+01:00 Remove no-dsa tagged entries which got an update According to 27cacdce393d (DLA-2072-1: fix fixed CVEs) those three CVEs were

[Git][security-tracker-team/security-tracker][master] add python-apt

2020-01-20 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: bc6dd14e by Thorsten Alteholz at 2020-01-20T15:23:00+01:00 add python-apt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] DLA-2072-1: fix fixed CVEs

2020-01-20 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 27cacdce by Sylvain Beucler at 2020-01-20T14:34:34+01:00 DLA-2072-1: fix fixed CVEs - - - - - 1 changed file: - data/DLA/list Changes: = data/DLA/list

[Git][security-tracker-team/security-tracker][master] wpa ospu

2020-01-20 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ea4847fd by Moritz Muehlenhoff at 2020-01-20T14:12:39+01:00 wpa ospu - - - - - 1 changed file: - data/next-oldstable-point-update.txt Changes: =

[Git][security-tracker-team/security-tracker][master] new python-apt issues

2020-01-20 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 42fe9ba9 by Moritz Muehlenhoff at 2020-01-20T14:10:43+01:00 new python-apt issues otrs fixed - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2072-1 for gpac

2020-01-20 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: f6732248 by Sylvain Beucler at 2020-01-20T13:53:22+01:00 Reserve DLA-2072-1 for gpac - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] CVE-2020-6630,CVE-2020-6631/gpac: jessie triage

2020-01-20 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: baf11202 by Sylvain Beucler at 2020-01-20T13:30:25+01:00 CVE-2020-6630,CVE-2020-6631/gpac: jessie triage - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] chromium dsa

2020-01-20 Thread Michael Gilbert
Michael Gilbert pushed to branch master at Debian Security Tracker / security-tracker Commits: 5aaa66ac by Michael Gilbert at 2020-01-20T11:55:54+00:00 chromium dsa - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2071-1 for thunderbird

2020-01-20 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 193ad34f by Emilio Pozuelo Monfort at 2020-01-20T11:52:03+01:00 Reserve DLA-2071-1 for thunderbird - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b4552a3 by Salvatore Bonaccorso at 2020-01-20T09:34:00+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-01-20 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fdc16fb7 by security tracker role at 2020-01-20T08:10:28+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list