[Git][security-tracker-team/security-tracker][master] Update Python3.4 DLA status

2019-01-19 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: e8ccb3ce by Brian May at 2019-01-19T23:08:03Z Update Python3.4 DLA status Progress slower then expected due to unexpected cold. - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Changed decision about nettle update.

2019-01-19 Thread Ola Lundqvist
+76,9 @@ linux-4.9 (Ben Hutchings) -- mxml (Abhijith PA) -- +nettle (Ola Lundqvist) + NOTE: 20190119: Prerequisite for gnutls28 being fixed. +-- nss NOTE: 20181212: Bug report not public but it is likely that the package is vulnerable. Maintainer not contacted NOTE: 20181212: yet

[Git][security-tracker-team/security-tracker][master] CVE-2018-1002208/mono adressed with 5.18.0.240+dfsg-1 upload to unstable

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d4b0161 by Salvatore Bonaccorso at 2019-01-19T22:41:51Z CVE-2018-1002208/mono adressed with 5.18.0.240+dfsg-1 upload to unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process one NFU

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d07559e0 by Salvatore Bonaccorso at 2019-01-19T22:31:11Z Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Nettle conclusion.

2019-01-19 Thread Ola Lundqvist
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e2f429c by Ola Lundqvist at 2019-01-19T22:14:49Z Nettle conclusion. - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: Add todo/note for CVE-2019-6256/liblivemedia

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 113e87fb by Salvatore Bonaccorso at 2019-01-19T22:11:18Z Add todo/note for CVE-2019-6256/liblivemedia The addition of 2018.11.26-1 was based on reproducibility of the issue. We have no proof yet

[Git][security-tracker-team/security-tracker][master] Triage results.

2019-01-19 Thread Ola Lundqvist
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker Commits: 2558c51f by Ola Lundqvist at 2019-01-19T22:02:31Z Triage results. - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6240/gitlab

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 71b50ec6 by Salvatore Bonaccorso at 2019-01-19T21:58:20Z Add Debian bug reference for CVE-2019-6240/gitlab - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-2435/mysql-connector-python

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 226323e0 by Salvatore Bonaccorso at 2019-01-19T21:53:06Z Add Debian bug reference for CVE-2019-2435/mysql-connector-python - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update notes on CVE-2019-3815/systemd

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e13356e by Salvatore Bonaccorso at 2019-01-19T21:50:22Z Update notes on CVE-2019-3815/systemd The CVE is affecting specifically our backport of the CVE-2018-16864 fix for stretch which was

[Git][security-tracker-team/security-tracker][master] Simplify note for CVE-2018-16883 for affected version information

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 85a08a3b by Salvatore Bonaccorso at 2019-01-19T21:45:54Z Simplify note for CVE-2018-16883 for affected version information - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reverse order of listing: kbuild embeds make-dfsg

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7d1aaa46 by Salvatore Bonaccorso at 2019-01-19T21:44:15Z Reverse order of listing: kbuild embeds make-dfsg - - - - - 1 changed file: - data/embedded-code-copies Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for mysql-5.7 issues from Oracle CPU Jan 2019

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 467b80aa by Salvatore Bonaccorso at 2019-01-19T21:20:41Z Add Debian bug reference for mysql-5.7 issues from Oracle CPU Jan 2019 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add fixed version for three CVEs for mupdf fixed via unstable

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b9a50504 by Salvatore Bonaccorso at 2019-01-19T21:16:31Z Add fixed version for three CVEs for mupdf fixed via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-16884/linux

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f71ec333 by Salvatore Bonaccorso at 2019-01-19T21:07:24Z Add fixed version for CVE-2018-16884/linux - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] automatic update

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6f37172d by security tracker role at 2019-01-19T20:10:14Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: dla: poppler already triaged no-dsa for jessie

2019-01-19 Thread Emilio Pozuelo Monfort
no-dsa + NOTE: 20190119: fix for CVE-2018-19788 not fully functional, investigating complete fix -- python3.4 (Brian May) NOTE: 20181225: The update should include also the postponed and no-dsa View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare

[Git][security-tracker-team/security-tracker][master] automatic update

2019-01-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 642cad9a by security tracker role at 2019-01-19T08:10:10Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list