[Secure-testing-commits] r45735 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 07:18:39 + (Sat, 29 Oct 2016) New Revision: 45735 Modified: data/CVE/list Log: Mark CVE-2016-7798/ruby-encryptor as fixed with the 3.0.0 upstream upload Modified: data/CVE/list === --- data/CVE/

[Secure-testing-commits] r45736 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 07:26:12 + (Sat, 29 Oct 2016) New Revision: 45736 Modified: data/CVE/list Log: Mark ruby-attr-encrypted version with fix first entering unstable Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r45737 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 07:28:48 + (Sat, 29 Oct 2016) New Revision: 45737 Modified: data/CVE/list Log: Record mariadb-10.0 fixes for unstable Modified: data/CVE/list === --- data/CVE/list 2016-10-29 07:26:12 UTC

[Secure-testing-commits] r45738 - data/CVE

2016-10-29 Thread Guido Guenther
Author: agx Date: 2016-10-29 12:04:24 + (Sat, 29 Oct 2016) New Revision: 45738 Modified: data/CVE/list Log: Mark all qemu versions as affected by the eepro100 leak and file bug. eepro100 is not heavily used though. Modified: data/CVE/list ==

[Secure-testing-commits] r45739 - data/CVE

2016-10-29 Thread Guido Guenther
Author: agx Date: 2016-10-29 12:55:51 + (Sat, 29 Oct 2016) New Revision: 45739 Modified: data/CVE/list Log: Mark all qemu versions as affected by the recent 9pfs issues and file bug Modified: data/CVE/list === --- data/CVE/li

[Secure-testing-commits] r45740 - data/CVE

2016-10-29 Thread Guido Guenther
Author: agx Date: 2016-10-29 13:25:15 + (Sat, 29 Oct 2016) New Revision: 45740 Modified: data/CVE/list Log: Mark qemu-kvm as not affected by CVE-2016-8667 The code only affects the mips platform emulation Modified: data/CVE/list

[Secure-testing-commits] r45741 - data/CVE

2016-10-29 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-29 13:43:51 + (Sat, 29 Oct 2016) New Revision: 45741 Modified: data/CVE/list Log: NFU Modified: data/CVE/list === --- data/CVE/list 2016-10-29 13:25:15 UTC (rev 45740) +++ data/CVE/list

[Secure-testing-commits] r45742 - data/CVE

2016-10-29 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-29 13:46:38 + (Sat, 29 Oct 2016) New Revision: 45742 Modified: data/CVE/list Log: NFU Modified: data/CVE/list === --- data/CVE/list 2016-10-29 13:43:51 UTC (rev 45741) +++ data/CVE/list

[Secure-testing-commits] r45743 - data/CVE

2016-10-29 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-29 13:56:14 + (Sat, 29 Oct 2016) New Revision: 45743 Modified: data/CVE/list Log: NFU Modified: data/CVE/list === --- data/CVE/list 2016-10-29 13:46:38 UTC (rev 45742) +++ data/CVE/list

[Secure-testing-commits] r45744 - data/CVE

2016-10-29 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-29 13:58:09 + (Sat, 29 Oct 2016) New Revision: 45744 Modified: data/CVE/list Log: NFU Modified: data/CVE/list === --- data/CVE/list 2016-10-29 13:56:14 UTC (rev 45743) +++ data/CVE/list

[Secure-testing-commits] r45745 - data/CVE

2016-10-29 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-29 14:28:01 + (Sat, 29 Oct 2016) New Revision: 45745 Modified: data/CVE/list Log: NFU Modified: data/CVE/list === --- data/CVE/list 2016-10-29 13:58:09 UTC (rev 45744) +++ data/CVE/list

[Secure-testing-commits] r45746 - bin

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 16:55:47 + (Sat, 29 Oct 2016) New Revision: 45746 Modified: bin/report-vuln Log: Summary: report-vuln: add an example of a simple oneliner with bash as well Modified: bin/report-vuln === --- b

[Secure-testing-commits] r45747 - data

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 16:56:55 + (Sat, 29 Oct 2016) New Revision: 45747 Modified: data/dla-needed.txt Log: Summary: take on tar Modified: data/dla-needed.txt === --- data/dla-needed.txt 2016-10-29 16:55:47 UTC (rev

[Secure-testing-commits] r45748 - data/CVE

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 17:04:08 + (Sat, 29 Oct 2016) New Revision: 45748 Modified: data/CVE/list Log: Summary: patch found for tar Modified: data/CVE/list === --- data/CVE/list 2016-10-29 16:56:55 UTC (rev 457

[Secure-testing-commits] r45749 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 17:21:46 + (Sat, 29 Oct 2016) New Revision: 45749 Modified: data/CVE/list Log: Replace proposed patch with the original one from the advisory Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r45750 - data/CVE

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 17:24:10 + (Sat, 29 Oct 2016) New Revision: 45750 Modified: data/CVE/list Log: Summary: better link for poc as well Modified: data/CVE/list === --- data/CVE/list 2016-10-29 17:21:46 UTC

[Secure-testing-commits] r45751 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 17:55:12 + (Sat, 29 Oct 2016) New Revision: 45751 Modified: data/CVE/list Log: Add bug reference for CVE-2016-7787/kde-runtime Modified: data/CVE/list === --- data/CVE/list 2016-10-29 17:2

[Secure-testing-commits] r45752 - data

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 18:17:30 + (Sat, 29 Oct 2016) New Revision: 45752 Modified: data/dsa-needed.txt Log: Add note for tar in dsa-needed list Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2016-10-29 17:5

[Secure-testing-commits] r45753 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 18:29:32 + (Sat, 29 Oct 2016) New Revision: 45753 Modified: data/CVE/list Log: Add fixing version for CVE-2016-779{3,4}/git-hub, #839284 Modified: data/CVE/list === --- data/CVE/list 2016-

[Secure-testing-commits] r45754 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 19:00:33 + (Sat, 29 Oct 2016) New Revision: 45754 Modified: data/CVE/list Log: Update information for CVE-2016-7042 Modified: data/CVE/list === --- data/CVE/list 2016-10-29 18:29:32 UTC (r

[Secure-testing-commits] r45755 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 19:31:30 + (Sat, 29 Oct 2016) New Revision: 45755 Modified: data/CVE/list Log: Add bug reference for CVE-2016-7954/bundler Modified: data/CVE/list === --- data/CVE/list 2016-10-29 19:00:33

[Secure-testing-commits] r45756 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-29 20:44:30 + (Sat, 29 Oct 2016) New Revision: 45756 Modified: data/CVE/list Log: Add bug reference for CVE-2016-7076/sudo, #842507 Modified: data/CVE/list === --- data/CVE/list 2016-10-29 19

[Secure-testing-commits] r45757 - data

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 21:53:41 + (Sat, 29 Oct 2016) New Revision: 45757 Modified: data/dla-needed.txt Log: Summary: update status of tar Modified: data/dla-needed.txt === --- data/dla-needed.txt 2016-10-29 20:44:30

[Secure-testing-commits] r45758 - data/CVE

2016-10-29 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-29 21:55:02 + (Sat, 29 Oct 2016) New Revision: 45758 Modified: data/CVE/list Log: Summary: link to my patch for tar Modified: data/CVE/list === --- data/CVE/list 2016-10-29 21:53:41 UTC (re

[Secure-testing-commits] r45759 - data/CVE

2016-10-29 Thread Roberto C. Sanchez
Author: roberto Date: 2016-10-30 01:21:46 + (Sun, 30 Oct 2016) New Revision: 45759 Modified: data/CVE/list Log: Annotate CVE-2016-7513 [off-by-one error leading to segfault] as not affecting wheezy Modified: data/CVE/list ===

[Secure-testing-commits] r45760 - data/CVE

2016-10-29 Thread Roberto C. Sanchez
Author: roberto Date: 2016-10-30 03:44:59 + (Sun, 30 Oct 2016) New Revision: 45760 Modified: data/CVE/list Log: Annotate CVE-2016-7525 [heap buffer overflow in psd file coder] as not affecting wheezy Modified: data/CVE/list =

[Secure-testing-commits] r45761 - data/CVE

2016-10-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-30 06:27:45 + (Sun, 30 Oct 2016) New Revision: 45761 Modified: data/CVE/list Log: Reference upstream patch for tar Modified: data/CVE/list === --- data/CVE/list 2016-10-30 03:44:59 UTC (rev 4