[Git][security-tracker-team/security-tracker][master] CVE-2019-12449/gvfs, CVE-2019-12448/gvfs, CVE-2019-12447/gvfs: jessie's version not affected.

2019-05-30 Thread Mike Gabriel
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker Commits: e68a78d1 by Mike Gabriel at 2019-05-30T22:40:24Z CVE-2019-12449/gvfs, CVE-2019-12448/gvfs, CVE-2019-12447/gvfs: jessies version not affected. - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add glib2.0 and claim it.

2019-05-30 Thread Mike Gabriel
Mike Gabriel pushed to branch master at Debian Security Tracker / security-tracker Commits: 172602fd by Mike Gabriel at 2019-05-30T22:23:32Z data/dla-needed.txt: Add glib2.0 and claim it. - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian tracking bug for CVE-2019-8457/sqlite3

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: aebfa590 by Salvatore Bonaccorso at 2019-05-30T20:44:35Z Add Debian tracking bug for CVE-2019-8457/sqlite3 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-9732/gitlab

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 45f7fdbc by Salvatore Bonaccorso at 2019-05-30T20:40:39Z Add CVE-2019-9732/gitlab - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-8457/sqlite3

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 21726166 by Salvatore Bonaccorso at 2019-05-30T20:27:44Z Add CVE-2019-8457/sqlite3 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2016-10245/doxygen

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8e708bb2 by Salvatore Bonaccorso at 2019-05-30T20:23:52Z Add CVE-2016-10245/doxygen - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3a7f8202 by Salvatore Bonaccorso at 2019-05-30T20:19:57Z Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove note for CVE-2019-12396

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 678dfc47 by Salvatore Bonaccorso at 2019-05-30T20:11:24Z Remove note for CVE-2019-12396 CVE was rejected as duplicate of CVE-2019-5440. - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1b6bfdfa by security tracker role at 2019-05-30T20:10:22Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Update severity for CVE-2019-12247/qemu

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 11a0b378 by Salvatore Bonaccorso at 2019-05-30T20:04:12Z Update severity for CVE-2019-12247/qemu Whilst beeing a bug needed to be fixed upstream disputed the issue to be actually exploitable.

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add and take golang-go.crypto

2019-05-30 Thread Adrian Bunk
Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker Commits: 795537be by Adrian Bunk at 2019-05-30T19:48:21Z data/dla-needed.txt: Add and take golang-go.crypto - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] qemu DSA

2019-05-30 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: d0ad4c7e by Moritz Muehlenhoff at 2019-05-30T18:03:53Z qemu DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2017-1000494 fixed in recent upload

2019-05-30 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: ef481864 by Thorsten Alteholz at 2019-05-30T16:59:37Z CVE-2017-1000494 fixed in recent upload - - - - - 0ff73890 by Thorsten Alteholz at 2019-05-30T16:59:52Z Reserve DLA-1811-1 for miniupnpd - -

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-1244{7,8,9}/gvfs

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 901466d1 by Salvatore Bonaccorso at 2019-05-30T14:04:25Z Add Debian bug reference for CVE-2019-1244{7,8,9}/gvfs - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-12450

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dc17b5ac by Salvatore Bonaccorso at 2019-05-30T13:38:53Z Add Debian bug reference for CVE-2019-12450 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-9928/gst-plugins-base1.0

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c79cc677 by Salvatore Bonaccorso at 2019-05-30T13:37:58Z Add fixed version for CVE-2019-9928/gst-plugins-base1.0 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add three new gvfs issues

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 24a93695 by Salvatore Bonaccorso at 2019-05-30T13:36:10Z Add three new gvfs issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-12450/glib2.0

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c2417e90 by Salvatore Bonaccorso at 2019-05-30T13:28:12Z Add CVE-2019-12450/glib2.0 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-12456/linux

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a0bf1fee by Salvatore Bonaccorso at 2019-05-30T13:21:38Z Add CVE-2019-12456/linux - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-8029/hadoop

2019-05-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 9a517f95 by Henri Salo at 2019-05-30T09:40:28Z CVE-2018-8029/hadoop - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-12454/linux

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3574b480 by Salvatore Bonaccorso at 2019-05-30T08:51:23Z Add CVE-2019-12454/linux - - - - - 2353078e by Salvatore Bonaccorso at 2019-05-30T08:51:24Z Add CVE-2019-12455/linux - - - - - 1

[Git][security-tracker-team/security-tracker][master] Remove wordpress for now: Patching CVE-2019-8942 makes CVE-2019-8943

2019-05-30 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 8ef170de by Abhijith PA at 2019-05-30T08:46:36Z Remove wordpress for now: Patching CVE-2019-8942 makes CVE-2019-8943 non-exploitable, as the former plays an essential part in successfully

[Git][security-tracker-team/security-tracker][master] Add two new firejail issues

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1d9657a8 by Salvatore Bonaccorso at 2019-05-30T08:42:31Z Add two new firejail issues - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2475965b by Salvatore Bonaccorso at 2019-05-30T08:36:53Z Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-3846/linux

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4dc71b64 by Salvatore Bonaccorso at 2019-05-30T08:32:56Z Add CVE-2019-3846/linux - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add TODO note for CVE-2019-11461 with respect to src:gnome3-desktop

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2911f8a1 by Salvatore Bonaccorso at 2019-05-30T08:20:40Z Add TODO note for CVE-2019-11461 with respect to src:gnome3-desktop We might need to track the CVE as well for gnome3-desktop. Nautilus

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-9218/gitlab

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d75e72b by Salvatore Bonaccorso at 2019-05-30T08:13:52Z Add CVE-2019-9218/gitlab - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-9177/gitlab

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 322cda02 by Salvatore Bonaccorso at 2019-05-30T08:11:55Z Add CVE-2019-9177/gitlab - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-7549/gitlab

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0504b02e by Salvatore Bonaccorso at 2019-05-30T08:09:36Z Add CVE-2019-7549/gitlab - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-12439/bubblewrap assigned

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9612679f by Salvatore Bonaccorso at 2019-05-30T08:04:59Z CVE-2019-12439/bubblewrap assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1810-1 for tomcat7

2019-05-30 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 76e947e3 by Abhijith PA at 2019-05-30T08:04:17Z Reserve DLA-1810-1 for tomcat7 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Remove tracking for qemu via stretch-pu, the upload will happen via DSA

2019-05-30 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bf168e52 by Salvatore Bonaccorso at 2019-05-30T07:43:48Z Remove tracking for qemu via stretch-pu, the upload will happen via DSA - - - - - 1 changed file: - data/next-point-update.txt

[Git][security-tracker-team/security-tracker][master] dla-needed: remove wireshark, no more issues

2019-05-30 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 46e88626 by Hugo Lefeuvre at 2019-05-30T07:02:45Z dla-needed: remove wireshark, no more issues - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2019-12295/wireshark: postponed in jessie

2019-05-30 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 1b0a7721 by Hugo Lefeuvre at 2019-05-30T07:01:18Z CVE-2019-12295/wireshark: postponed in jessie - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2017-{15189, 13764}: wheezy not-affected

2019-05-30 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ba98dfb by Hugo Lefeuvre at 2019-05-30T06:58:46Z CVE-2017-{15189, 13764}: wheezy not-affected Vulnerable code not present in 1.12.1+g01b65bf-4+deb8u6~deb7u17. (also, wheezy and jessie share