[Secure-testing-commits] r54712 - in data: . DSA

2017-08-13 Thread Sebastien Delafond
Author: seb Date: 2017-08-13 08:59:01 + (Sun, 13 Aug 2017) New Revision: 54712 Modified: data/DSA/list data/dsa-needed.txt Log: Reserve DSA-3940-1 for cvs (CVE-2017-12836) Modified: data/DSA/list === --- data/DSA/list

[Secure-testing-commits] r54713 - data/CVE

2017-08-13 Thread security tracker role
Author: sectracker Date: 2017-08-13 09:10:13 + (Sun, 13 Aug 2017) New Revision: 54713 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2017-08-13 08:59:01 UTC (rev 54712) +++ da

[Secure-testing-commits] r54714 - lib/python/sectracker

2017-08-13 Thread Sebastien Delafond
Author: seb Date: 2017-08-13 10:09:34 + (Sun, 13 Aug 2017) New Revision: 54714 Modified: lib/python/sectracker/parsers.py Log: Let the CVE parser know about postponed & ignored sub-states Modified: lib/python/sectracker/parsers.py ===

[Secure-testing-commits] r54715 - data

2017-08-13 Thread Thorsten Alteholz
available for the remaining CVEs yet, pinged upstream NOTE: 20170708: re-pinged upstream (lamby) - NOTE: 20170723, no patches available yet + NOTE: 20170813, no patches available yet -- -jbig2dec (Thorsten Alteholz) +jbig2dec NOTE: 20170629, no patch available yet NOTE: other no-dsa CVE

[Secure-testing-commits] r54716 - data

2017-08-13 Thread Thorsten Alteholz
Author: alteholz Date: 2017-08-13 14:40:12 + (Sun, 13 Aug 2017) New Revision: 54716 Modified: data/dla-needed.txt Log: claim extplorer Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-13 14:21:19 UTC (rev 5471

[Secure-testing-commits] r54717 - in data: . DSA

2017-08-13 Thread Moritz Muehlenhoff
Author: jmm Date: 2017-08-13 15:13:18 + (Sun, 13 Aug 2017) New Revision: 54717 Modified: data/DSA/list data/dsa-needed.txt Log: add iortcw to DSA/list unfortunately the ID clashed since the DSA had been stuck in my MUA so retroactively treat this as 3941 even though it was sent out

[Secure-testing-commits] r54718 - data

2017-08-13 Thread Moritz Muehlenhoff
Author: jmm Date: 2017-08-13 15:29:41 + (Sun, 13 Aug 2017) New Revision: 54718 Modified: data/dsa-needed.txt Log: add db to dsa-needed Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2017-08-13 15:13:18 UTC (rev 547

[Secure-testing-commits] r54719 - data/CVE

2017-08-13 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-08-13 16:04:10 + (Sun, 13 Aug 2017) New Revision: 54719 Modified: data/CVE/list Log: Add fixing version for src:linux upload to unstable Modified: data/CVE/list === --- data/CVE/list 2017-08-13

[Secure-testing-commits] r54721 - data

2017-08-13 Thread Chris Lamb
UTC (rev 54720) +++ data/dla-needed.txt 2017-08-13 17:32:15 UTC (rev 54721) @@ -35,6 +35,7 @@ cvs -- db + NOTE: 20170813: Not sure vulnerable as some of the DB_CONFIG code is missing in env_open.c, but the reporter wasn't clear that was the approach anyway. (lamby) -- eglibc

[Secure-testing-commits] r54722 - data

2017-08-13 Thread Chris Lamb
Author: lamby Date: 2017-08-13 17:32:17 + (Sun, 13 Aug 2017) New Revision: 54722 Modified: data/dla-needed.txt Log: Re-order extplorer in data/dla-needed.txt Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-13

[Secure-testing-commits] r54723 - data

2017-08-13 Thread Chris Lamb
o bother maintainer yet, sent email later -- libxml2 - NOTE: 20170813, no fix yet + NOTE: 20170813: no fix yet -- libytnef - NOTE: 20170813, patches missing + NOTE: 20170813: patches missing -- linux -- @@ -168,10 +168,10 @@ -- rbenv NOTE: .ruby-version is .rbenv-version in wheezy - NOTE: 02/

[Secure-testing-commits] r54720 - data

2017-08-13 Thread Chris Lamb
Author: lamby Date: 2017-08-13 17:32:12 + (Sun, 13 Aug 2017) New Revision: 54720 Modified: data/dla-needed.txt Log: Triage db for LTS Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-13 16:04:10 UTC (rev 54719

[Secure-testing-commits] r54724 - in data: . DLA

2017-08-13 Thread Chris Lamb
: 20170809: Not entirely sure vulnerable, adding just in case. (lamby) -- -cvs --- db NOTE: 20170813: Not sure vulnerable as some of the DB_CONFIG code is missing in env_open.c, but the reporter wasn't clear that was the approach anyway. (

[Secure-testing-commits] r54725 - data/CVE

2017-08-13 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-08-13 19:02:26 + (Sun, 13 Aug 2017) New Revision: 54725 Modified: data/CVE/list Log: Add tracking bug for CVE-2016-151{6,7} Modified: data/CVE/list === --- data/CVE/list 2017-08-13 18:24:30 UTC

[Secure-testing-commits] r54726 - data/CVE

2017-08-13 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-08-13 19:06:41 + (Sun, 13 Aug 2017) New Revision: 54726 Modified: data/CVE/list Log: Add tracking bugs for opencv issues This time made two bugs referncing the respective upstream issue to track the issues. It might actually be better to clone those for the indivi

[Secure-testing-commits] r54727 - in data: . DSA

2017-08-13 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-08-13 19:36:13 + (Sun, 13 Aug 2017) New Revision: 54727 Modified: data/DSA/list data/dsa-needed.txt Log: Reserve DSA for supervisor Modified: data/DSA/list === --- data/DSA/list 2017-08-13 19

[Secure-testing-commits] r54728 - data/CVE

2017-08-13 Thread security tracker role
Author: sectracker Date: 2017-08-13 21:10:15 + (Sun, 13 Aug 2017) New Revision: 54728 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2017-08-13 19:36:13 UTC (rev 54727) +++ da

[Secure-testing-commits] r54729 - data/CVE

2017-08-13 Thread Moritz Muehlenhoff
Author: jmm Date: 2017-08-13 22:04:22 + (Sun, 13 Aug 2017) New Revision: 54729 Modified: data/CVE/list Log: remove temporary workaround for weechat/buster Modified: data/CVE/list === --- data/CVE/list 2017-08-13 21:10:1

[Secure-testing-commits] r54730 - data/CVE

2017-08-13 Thread Moritz Muehlenhoff
Author: jmm Date: 2017-08-13 22:05:03 + (Sun, 13 Aug 2017) New Revision: 54730 Modified: data/CVE/list Log: mark log4j as ignored in jessie Modified: data/CVE/list === --- data/CVE/list 2017-08-13 22:04:22 UTC (rev 5472