[Secure-testing-commits] r58165 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-12-01 07:38:45 + (Fri, 01 Dec 2017) New Revision: 58165 Modified: data/CVE/list Log: Mark spice-vdagent issue as no-dsa Modified: data/CVE/list === --- data/CVE/list 2017-12-01 07:32:14 UTC

[Secure-testing-commits] r58164 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-12-01 07:32:14 + (Fri, 01 Dec 2017) New Revision: 58164 Modified: data/CVE/list Log: Add bug reference for CVE-2017-15108 Modified: data/CVE/list === --- data/CVE/list 2017-12-01 06:19:38 UTC

[Secure-testing-commits] r58163 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-12-01 06:19:38 + (Fri, 01 Dec 2017) New Revision: 58163 Modified: data/CVE/list Log: Mark CVE-2017-7545 as NFU Modified: data/CVE/list === --- data/CVE/list 2017-11-30 22:24:18 UTC (rev 58162)

[Secure-testing-commits] r58162 - data

2017-11-30 Thread Markus Koschany
Author: apo Date: 2017-11-30 22:24:18 + (Thu, 30 Nov 2017) New Revision: 58162 Modified: data/dla-needed.txt Log: Claim libextractor in dla-needed.txt Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-30

[Secure-testing-commits] r58161 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 21:22:40 + (Thu, 30 Nov 2017) New Revision: 58161 Modified: data/CVE/list Log: Add fixing version for CVE-2017-15116/linux Modified: data/CVE/list === --- data/CVE/list 2017-11-30

[Secure-testing-commits] r58160 - data/DLA

2017-11-30 Thread Markus Koschany
Author: apo Date: 2017-11-30 21:19:00 + (Thu, 30 Nov 2017) New Revision: 58160 Modified: data/DLA/list Log: sox,CVE-2017-15372 and CVE-2017-15642 will also be fixed in DLA-1197-1 Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r58159 - data

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 21:12:22 + (Thu, 30 Nov 2017) New Revision: 58159 Modified: data/next-oldstable-point-update.txt data/next-point-update.txt Log: Two more CVEs to be included in {jessie,stretch}-pu update for busybox Modified: data/next-oldstable-point-update.txt

[Secure-testing-commits] r58158 - data/CVE

2017-11-30 Thread security tracker role
Author: sectracker Date: 2017-11-30 21:10:21 + (Thu, 30 Nov 2017) New Revision: 58158 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2017-11-30 21:08:48 UTC (rev 58157) +++

[Secure-testing-commits] r58157 - data

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 21:08:48 + (Thu, 30 Nov 2017) New Revision: 58157 Modified: data/next-oldstable-point-update.txt Log: Record proposed update for CVE-2017-16899 via jessie-pu Modified: data/next-oldstable-point-update.txt

[Secure-testing-commits] r58156 - data

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 21:08:08 + (Thu, 30 Nov 2017) New Revision: 58156 Modified: data/next-point-update.txt Log: Record proposed update for CVE-2017-16899 Modified: data/next-point-update.txt === ---

[Secure-testing-commits] r58155 - data/CVE

2017-11-30 Thread Markus Koschany
Author: apo Date: 2017-11-30 21:00:27 + (Thu, 30 Nov 2017) New Revision: 58155 Modified: data/CVE/list Log: Fix wrong "is fixed" version for sox CVE-2017-15372 and CVE-2017-15642 Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r58154 - in data: . DLA

2017-11-30 Thread Markus Koschany
Author: apo Date: 2017-11-30 20:51:27 + (Thu, 30 Nov 2017) New Revision: 58154 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1197-1 for sox Modified: data/DLA/list === --- data/DLA/list 2017-11-30

[Secure-testing-commits] r58153 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 19:54:09 + (Thu, 30 Nov 2017) New Revision: 58153 Modified: data/CVE/list Log: Add fixing version for three linux CVEs and upload to sid Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r58152 - data/CVE

2017-11-30 Thread Emilio Pozuelo Monfort
Author: pochu Date: 2017-11-30 19:22:29 + (Thu, 30 Nov 2017) New Revision: 58152 Modified: data/CVE/list Log: CVE-2017-16611/libxfont: add commit for 1.5 branch Modified: data/CVE/list === --- data/CVE/list 2017-11-30

[Secure-testing-commits] r58151 - in data: . DLA

2017-11-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-30 18:33:24 + (Thu, 30 Nov 2017) New Revision: 58151 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1196-1 for optipng Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r58150 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 18:08:03 + (Thu, 30 Nov 2017) New Revision: 58150 Modified: data/CVE/list Log: Add CVE-2017-1570{1,2}/qpid-java, #840131 Modified: data/CVE/list === --- data/CVE/list 2017-11-30 18:06:04

[Secure-testing-commits] r58149 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 18:06:04 + (Thu, 30 Nov 2017) New Revision: 58149 Modified: data/CVE/list Log: Update older Qpid Java Broker NFUs to now track itp'ed bug #840131 Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r58148 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 17:55:14 + (Thu, 30 Nov 2017) New Revision: 58148 Modified: data/CVE/list Log: Slit up note over multiple lines Modified: data/CVE/list === --- data/CVE/list 2017-11-30 17:10:55 UTC (rev

[Secure-testing-commits] r58147 - data/CVE

2017-11-30 Thread Raphaël Hertzog
Author: hertzog Date: 2017-11-30 17:10:55 + (Thu, 30 Nov 2017) New Revision: 58147 Modified: data/CVE/list Log: Add patches for simplesamlphp issues Modified: data/CVE/list === --- data/CVE/list 2017-11-30 15:53:22 UTC

[Secure-testing-commits] r58146 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 15:53:22 + (Thu, 30 Nov 2017) New Revision: 58146 Modified: data/CVE/list Log: curl issues fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2017-11-30 14:39:30 UTC (rev

[Secure-testing-commits] r58145 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 14:39:30 + (Thu, 30 Nov 2017) New Revision: 58145 Modified: data/CVE/list Log: CVE-2017-1000248 fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2017-11-30 14:05:52 UTC

[Secure-testing-commits] r58144 - in data: . DLA

2017-11-30 Thread Thorsten Alteholz
Author: alteholz Date: 2017-11-30 14:05:52 + (Thu, 30 Nov 2017) New Revision: 58144 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1195-1 for curl Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r58143 - in data: . DLA

2017-11-30 Thread Thorsten Alteholz
Author: alteholz Date: 2017-11-30 14:04:10 + (Thu, 30 Nov 2017) New Revision: 58143 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1194-1 for libxml2 Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r58142 - data

2017-11-30 Thread Raphaël Hertzog
Author: hertzog Date: 2017-11-30 13:35:58 + (Thu, 30 Nov 2017) New Revision: 58142 Modified: data/dla-needed.txt Log: Take simplesamlphp in dla-needed.txt Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-30

[Secure-testing-commits] r58141 - data

2017-11-30 Thread Guido Guenther
Author: agx Date: 2017-11-30 12:54:23 + (Thu, 30 Nov 2017) New Revision: 58141 Modified: data/dla-needed.txt Log: lts: Grab swftools Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-30 12:04:26 UTC (rev

[Secure-testing-commits] r58140 - data/CVE

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 12:04:26 + (Thu, 30 Nov 2017) New Revision: 58140 Modified: data/CVE/list Log: Mark CVE-2017-12631 as NFU Modified: data/CVE/list === --- data/CVE/list 2017-11-30 11:41:49 UTC (rev 58139)

[Secure-testing-commits] r58139 - / stamps

2017-11-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2017-11-30 11:41:49 + (Thu, 30 Nov 2017) New Revision: 58139 Added: stamps/.keep Removed: stamps/.gitignore Modified: .gitignore Log: Move stamps to global .gitignore and add .keep file We just want to keep at least the directory stamps around in both cases were

[Secure-testing-commits] r58138 - data

2017-11-30 Thread Guido Guenther
Author: agx Date: 2017-11-30 10:36:38 + (Thu, 30 Nov 2017) New Revision: 58138 Modified: data/dla-needed.txt Log: lts: grab thunderbird Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-30 10:35:37 UTC (rev

[Secure-testing-commits] r58137 - data

2017-11-30 Thread Guido Guenther
Author: agx Date: 2017-11-30 10:35:37 + (Thu, 30 Nov 2017) New Revision: 58137 Modified: data/dla-needed.txt Log: lts: remove openexr CVE-2017-12596 was already addressed by DLA-1083-1 and the other can be postponed (no upstream fix available yet ant it's unclear if it's really a bug)

[Secure-testing-commits] r58136 - data/CVE

2017-11-30 Thread Guido Guenther
Author: agx Date: 2017-11-30 10:28:05 + (Thu, 30 Nov 2017) New Revision: 58136 Modified: data/CVE/list Log: lts: CVE-2017-12596 was fixed by DLA-1083-1 as well The patches added checks that address this CVE as well. See https://github.com/openexr/openexr/issues/238 Modified:

[Secure-testing-commits] r58135 - data/CVE

2017-11-30 Thread security tracker role
Author: sectracker Date: 2017-11-30 09:10:14 + (Thu, 30 Nov 2017) New Revision: 58135 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list === --- data/CVE/list 2017-11-30 07:48:36 UTC (rev 58134) +++