[Secure-testing-commits] r45824 - data

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:28:26 + (Tue, 01 Nov 2016) New Revision: 45824 Modified: data/dsa-needed.txt Log: Add tomcat7 and tomcat8 to dsa-needed list Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2016-11-

[Secure-testing-commits] r45823 - data

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:23:17 + (Tue, 01 Nov 2016) New Revision: 45823 Modified: data/dsa-needed.txt Log: Take mariadb-10.0 from dsa-needed, otto prepared updates Modified: data/dsa-needed.txt === --- data/dsa-neede

[Secure-testing-commits] r45822 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:09:49 + (Tue, 01 Nov 2016) New Revision: 45822 Modified: data/CVE/list Log: Add another NFU for MuJS Modified: data/CVE/list === --- data/CVE/list 2016-11-01 06:08:41 UTC (rev 45821) ++

[Secure-testing-commits] r45821 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:08:41 + (Tue, 01 Nov 2016) New Revision: 45821 Modified: data/CVE/list Log: Expand TODO for CVE-2016-8867 Modified: data/CVE/list === --- data/CVE/list 2016-11-01 06:06:23 UTC (rev 4582

[Secure-testing-commits] r45820 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:06:23 + (Tue, 01 Nov 2016) New Revision: 45820 Modified: data/CVE/list Log: Add two new dokuwiki issues Modified: data/CVE/list === --- data/CVE/list 2016-11-01 06:04:30 UTC (rev 45819)

[Secure-testing-commits] r45819 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:04:30 + (Tue, 01 Nov 2016) New Revision: 45819 Modified: data/CVE/list Log: Add CVE-2016-7919 Modified: data/CVE/list === --- data/CVE/list 2016-11-01 06:03:25 UTC (rev 45818) +++ data/

[Secure-testing-commits] r45818 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:03:25 + (Tue, 01 Nov 2016) New Revision: 45818 Modified: data/CVE/list Log: Three new CVEs which are NFU, MuJS Modified: data/CVE/list === --- data/CVE/list 2016-11-01 06:00:39 UTC (rev

[Secure-testing-commits] r45817 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 06:00:39 + (Tue, 01 Nov 2016) New Revision: 45817 Modified: data/CVE/list Log: Add new openjpeg2 issues Modified: data/CVE/list === --- data/CVE/list 2016-11-01 05:52:38 UTC (rev 45816) ++

[Secure-testing-commits] r45816 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-11-01 05:52:38 + (Tue, 01 Nov 2016) New Revision: 45816 Modified: data/CVE/list Log: Add three new memcached issues Modified: data/CVE/list === --- data/CVE/list 2016-11-01 05:25:11 UTC (rev 458

[Secure-testing-commits] r45815 - data

2016-10-31 Thread Henri Salo
Author: fgeek-guest Date: 2016-11-01 05:25:11 + (Tue, 01 Nov 2016) New Revision: 45815 Modified: data/embedded-code-copies Log: insighttoolkit4 embeds tiff tools code Modified: data/embedded-code-copies === --- data/embedded-c

[Secure-testing-commits] r45814 - data

2016-10-31 Thread Henri Salo
Author: fgeek-guest Date: 2016-10-31 21:14:30 + (Mon, 31 Oct 2016) New Revision: 45814 Modified: data/embedded-code-copies Log: povray embeds tiff tools Modified: data/embedded-code-copies === --- data/embedded-code-copies 2

[Secure-testing-commits] r45813 - data/CVE

2016-10-31 Thread security tracker role
Author: sectracker Date: 2016-10-31 21:10:26 + (Mon, 31 Oct 2016) New Revision: 45813 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2016-10-31 20:19:51 UTC (rev 45812) +++ da

[Secure-testing-commits] r45812 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 20:19:51 + (Mon, 31 Oct 2016) New Revision: 45812 Modified: data/CVE/list Log: Expand note for CVE-2016-8339/redis Modified: data/CVE/list === --- data/CVE/list 2016-10-31 20:03:46 UTC (re

[Secure-testing-commits] r45811 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 20:03:46 + (Mon, 31 Oct 2016) New Revision: 45811 Modified: data/CVE/list Log: CVE-2016-8339/redis does not affect jessie Modified: data/CVE/list === --- data/CVE/list 2016-10-31 17:40:56

[Secure-testing-commits] r45810 - data

2016-10-31 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-31 17:40:56 + (Mon, 31 Oct 2016) New Revision: 45810 Modified: data/dla-needed.txt Log: Summary: some assignation cleanups Modified: data/dla-needed.txt === --- data/dla-needed.txt 2016-10-31 17:

[Secure-testing-commits] r45809 - in data: . CVE

2016-10-31 Thread Guido Guenther
Author: agx Date: 2016-10-31 17:29:39 + (Mon, 31 Oct 2016) New Revision: 45809 Modified: data/CVE/list data/dla-needed.txt Log: lts-triage libupnp / libupnp4 The crash is reproducible on wheezy libupnp, libupnp4 has very similar code. Modified: data/CVE/list ===

[Secure-testing-commits] r45808 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 16:54:53 + (Mon, 31 Oct 2016) New Revision: 45808 Modified: data/CVE/list Log: Mark CVE-2016-7969/libass as no-dsa Modified: data/CVE/list === --- data/CVE/list 2016-10-31 16:50:42 UTC (re

[Secure-testing-commits] r45807 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 16:50:42 + (Mon, 31 Oct 2016) New Revision: 45807 Modified: data/CVE/list Log: Mark CVE-2016-8611/glance as no-dsa Modified: data/CVE/list === --- data/CVE/list 2016-10-31 16:48:36 UTC (re

[Secure-testing-commits] r45806 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 16:48:36 + (Mon, 31 Oct 2016) New Revision: 45806 Modified: data/CVE/list Log: Mark CVE-2016-7902/dotclear as no-dsa Modified: data/CVE/list === --- data/CVE/list 2016-10-31 16:46:41 UTC (

[Secure-testing-commits] r45805 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 16:46:41 + (Mon, 31 Oct 2016) New Revision: 45805 Modified: data/CVE/list Log: Mark CVE-2016-7903/dotclear as no-dsa Modified: data/CVE/list === --- data/CVE/list 2016-10-31 15:34:49 UTC (

[Secure-testing-commits] r45803 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 15:26:08 + (Mon, 31 Oct 2016) New Revision: 45803 Modified: data/CVE/list Log: Add reference for CVE-2014-9862/bsdiff, containing reproducer case Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r45804 - in data: . DLA

2016-10-31 Thread Thorsten Alteholz
Author: alteholz Date: 2016-10-31 15:34:49 + (Mon, 31 Oct 2016) New Revision: 45804 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-691-1 for libxml2 Modified: data/DLA/list === --- data/DLA/list 2016-10-

[Secure-testing-commits] r45802 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 15:14:41 + (Mon, 31 Oct 2016) New Revision: 45802 Modified: data/CVE/list Log: Update for CVE-2016-7971, still disputed and not decision on reject of CVE yet, mark as unimportant Modified: data/CVE/list ==

[Secure-testing-commits] r45801 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 14:58:59 + (Mon, 31 Oct 2016) New Revision: 45801 Modified: data/CVE/list Log: Add CVE-2016-9085/libwebp bug, #842714 Modified: data/CVE/list === --- data/CVE/list 2016-10-31 14:45:55 UTC

[Secure-testing-commits] r45800 - in data: . DLA

2016-10-31 Thread Antoine Beaupré
Author: anarcat Date: 2016-10-31 14:45:55 + (Mon, 31 Oct 2016) New Revision: 45800 Modified: data/DLA/list data/dla-needed.txt Log: claim DLA-690-1 for tar Modified: data/DLA/list === --- data/DLA/list 2016-10-31 14:3

[Secure-testing-commits] r45799 - data

2016-10-31 Thread Markus Koschany
Author: apo Date: 2016-10-31 14:31:24 + (Mon, 31 Oct 2016) New Revision: 45799 Modified: data/dla-needed.txt Log: Add tomcat6 to dla-needed.txt Claim tomcat6 and tomcat7 Modified: data/dla-needed.txt === --- data/dla-needed.

[Secure-testing-commits] r45798 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:50:19 + (Mon, 31 Oct 2016) New Revision: 45798 Modified: data/CVE/list Log: Record fixed versions for CVE-2016-0762 Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:49:17 UTC

[Secure-testing-commits] r45797 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:49:17 + (Mon, 31 Oct 2016) New Revision: 45797 Modified: data/CVE/list Log: Record fixed version for CVE-2016-5018 Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:47:58 UTC

[Secure-testing-commits] r45796 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:47:58 + (Mon, 31 Oct 2016) New Revision: 45796 Modified: data/CVE/list Log: Add fixed version information for CVE-2016-6794 Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:4

[Secure-testing-commits] r45795 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:46:51 + (Mon, 31 Oct 2016) New Revision: 45795 Modified: data/CVE/list Log: Add fixed versions for CVE-2016-6796 Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:45:08 UTC (r

[Secure-testing-commits] r45794 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:45:08 + (Mon, 31 Oct 2016) New Revision: 45794 Modified: data/CVE/list Log: Update status for CVE-2016-6797/tomcat{8,7} Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:17:58

[Secure-testing-commits] r45793 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:17:58 + (Mon, 31 Oct 2016) New Revision: 45793 Modified: data/CVE/list Log: Add fixed version for CVE-2016-6321/tar Modified: data/CVE/list === --- data/CVE/list 2016-10-31 13:09:52 UTC

[Secure-testing-commits] r45792 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:09:52 + (Mon, 31 Oct 2016) New Revision: 45792 Modified: data/CVE/list Log: CVE-2016-8670, #840805, fixed with unstable upload Modified: data/CVE/list === --- data/CVE/list 2016-10-31 1

[Secure-testing-commits] r45791 - data/CVE

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 13:08:32 + (Mon, 31 Oct 2016) New Revision: 45791 Modified: data/CVE/list Log: CVE-2016-7568/libgd2, #839659, fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2016-10-31 09:

[Secure-testing-commits] r45790 - in data: . CVE

2016-10-31 Thread Guido Guenther
Author: agx Date: 2016-10-31 09:21:38 + (Mon, 31 Oct 2016) New Revision: 45790 Modified: data/CVE/list data/dla-needed.txt Log: LTS-Triage tomcat CVEs Modified: data/CVE/list === --- data/CVE/list 2016-10-31 09:10:15

[Secure-testing-commits] r45789 - data/CVE

2016-10-31 Thread security tracker role
Author: sectracker Date: 2016-10-31 09:10:15 + (Mon, 31 Oct 2016) New Revision: 45789 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2016-10-31 08:19:13 UTC (rev 45788) +++ da

[Secure-testing-commits] r45788 - data

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 08:19:13 + (Mon, 31 Oct 2016) New Revision: 45788 Modified: data/dsa-needed.txt Log: Take tar from dsa-needed list Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2016-10-31 08:19:11 U

[Secure-testing-commits] r45787 - data

2016-10-31 Thread Salvatore Bonaccorso
Author: carnil Date: 2016-10-31 08:19:11 + (Mon, 31 Oct 2016) New Revision: 45787 Modified: data/dsa-needed.txt Log: Update note for libxml2 Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2016-10-31 06:36:21 UTC (re