[Git][security-tracker-team/security-tracker][master] Process NFUs

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 88ea83a9 by Salvatore Bonaccorso at 2019-03-31T06:58:45Z Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ==

[Git][security-tracker-team/security-tracker][master] Remove no-dsa tagged entry which got update in DLA-1740-1

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6d363fa4 by Salvatore Bonaccorso at 2019-03-31T06:36:36Z Remove no-dsa tagged entry which got update in DLA-1740-1 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new libclamunrar, clamav issues

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 73c70f17 by Moritz Muehlenhoff at 2019-03-30T23:55:10Z new libclamunrar, clamav issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] buster triage

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 18ca403c by Moritz Muehlenhoff at 2019-03-30T23:34:33Z buster triage - - - - - 2 changed files: - data/CVE/list - data/DSA/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1740-1 for libav

2019-03-30 Thread Mike Gabriel
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker Commits: 5356f9a5 by Mike Gabriel at 2019-03-30T23:11:16Z Reserve DLA-1740-1 for libav - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: = data/

[Git][security-tracker-team/security-tracker][master] NFUs

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 157ee979 by Moritz Muehlenhoff at 2019-03-30T21:43:44Z NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ==

[Git][security-tracker-team/security-tracker][master] buster triage

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 41237a80 by Moritz Muehlenhoff at 2019-03-30T21:41:04Z buster triage py3.6 removed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ===

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-10650/imagemagick

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a3e22942 by Salvatore Bonaccorso at 2019-03-30T20:31:38Z Add CVE-2019-10650/imagemagick - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/l

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-10649/imagemagick

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2361996d by Salvatore Bonaccorso at 2019-03-30T20:17:40Z Add CVE-2019-10649/imagemagick - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/l

[Git][security-tracker-team/security-tracker][master] automatic update

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 267df51b by security tracker role at 2019-03-30T20:10:17Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] pound fixed in experimental

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 16c8bb71 by Moritz Muehlenhoff at 2019-03-30T19:00:57Z pound fixed in experimental add ruby to dsa-needed - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-3867 (NFU)

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ea2cef2 by Salvatore Bonaccorso at 2019-03-30T18:20:28Z Add CVE-2019-3867 (NFU) - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ===

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-3884 (atomic-openshift)

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c15dade by Salvatore Bonaccorso at 2019-03-30T18:18:42Z Add CVE-2019-3884 (atomic-openshift) - - - - - 1 changed file: - data/CVE/list Changes: = data

[Git][security-tracker-team/security-tracker][master] Add initial information on CVE-2019-9946

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6d950ef6 by Salvatore Bonaccorso at 2019-03-30T18:15:29Z Add initial information on CVE-2019-9946 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Fix wrong CVE list syntax

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b5493a59 by Markus Koschany at 2019-03-30T17:56:19Z Fix wrong CVE list syntax - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ===

Processing 9126ab66386d45e266e4bf9e98d8d20205893f51 failed

2019-03-30 Thread security tracker role
The error message was: data/CVE/list:13285: expected package entry, got: '[jessie] - (vulnerable code is not present in 4.x)' Makefile:34: recipe for target 'all' failed make: *** [all] Error 1 ___ debian-security-tracker-commits mailing list debian-s

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-5420,rails: Jessie is not affected

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ba732fcd by Markus Koschany at 2019-03-30T17:48:07Z CVE-2019-5420,rails: Jessie is not affected The vulnerable code is not present in the 4.x branch of rails. - - - - - 9126ab66 by Markus Koschany

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-1002162/skopeo

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b025eec8 by Salvatore Bonaccorso at 2019-03-30T16:57:27Z Add CVE-2019-1002162/skopeo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-10269/bwa fixed in unstable

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d4b2f0c5 by Salvatore Bonaccorso at 2019-03-30T16:42:21Z CVE-2019-10269/bwa fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes: = data

[Git][security-tracker-team/security-tracker][master] thunderbird DSA

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b8acd10f by Moritz Muehlenhoff at 2019-03-30T15:26:37Z thunderbird DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: = data/D

[Git][security-tracker-team/security-tracker][master] buster triage

2019-03-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2576ab77 by Moritz Muehlenhoff at 2019-03-30T15:25:17Z buster triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1738-1 for gpsd

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b55da13d by Markus Koschany at 2019-03-30T14:18:41Z Reserve DLA-1738-1 for gpsd - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Mark remaining edk2 issues for Jessie as EOL.

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 4ed18722 by Markus Koschany at 2019-03-30T13:27:34Z Mark remaining edk2 issues for Jessie as EOL. - - - - - 1 changed file: - data/CVE/list Changes: = data/

[Git][security-tracker-team/security-tracker][master] CVE-2019-0757,nuget: Link to upstream bug report.

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 5853f8a8 by Markus Koschany at 2019-03-30T13:24:59Z CVE-2019-0757,nuget: Link to upstream bug report. - - - - - 1 changed file: - data/CVE/list Changes: = d

[Git][security-tracker-team/security-tracker][master] Claim gpsd in dla-needed.txt

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 93a689d3 by Markus Koschany at 2019-03-30T12:47:08Z Claim gpsd in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.

[Git][security-tracker-team/security-tracker][master] CVE-2017-7655,mosquitto: Mark as postponed for Jessie

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d1cb1f71 by Markus Koschany at 2019-03-30T12:45:55Z CVE-2017-7655,mosquitto: Mark as postponed for Jessie Minor issue, can be fixed later when more important issues arise. - - - - - 1 changed fil

[Git][security-tracker-team/security-tracker][master] Claim rails in dla-needed.txt

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: adaf26e7 by Markus Koschany at 2019-03-30T11:58:03Z Claim rails in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed

[Git][security-tracker-team/security-tracker][master] CVE-2019-0199,tomcat8: Jessie is not affected

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 0d5b62a4 by Markus Koschany at 2019-03-30T11:36:19Z CVE-2019-0199,tomcat8: Jessie is not affected HTTP/2 support is not implemented. - - - - - 1 changed file: - data/CVE/list Changes: ===

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-10269,bwa: Jessie is not affected

2019-03-30 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 29bd819a by Markus Koschany at 2019-03-30T11:17:29Z CVE-2019-10269,bwa: Jessie is not affected Vulnerable code is not present. - - - - - 108c77a0 by Markus Koschany at 2019-03-30T11:21:22Z CVE-2019

[Git][security-tracker-team/security-tracker][master] Three CVEs fixed for hdf5 in experimental

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b402017b by Salvatore Bonaccorso at 2019-03-30T09:19:13Z Three CVEs fixed for hdf5 in experimental - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f4c2143c by Salvatore Bonaccorso at 2019-03-30T09:14:53Z Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ==

[Git][security-tracker-team/security-tracker][master] automatic update

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6bf81606 by security tracker role at 2019-03-30T08:10:13Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list =

[Git][security-tracker-team/security-tracker][master] Demote severity for open-vm-tools issue to unimportant

2019-03-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0c6dc65c by Salvatore Bonaccorso at 2019-03-30T07:44:34Z Demote severity for open-vm-tools issue to unimportant The symlink race is neutralized by the kernel hardening as discussed with the mai