[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add part 2 of patch for CVE-2017-11613

2018-03-17 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: 94061894 by Brian May at 2018-03-18T11:50:06+11:00 Add part 2 of patch for CVE-2017-11613 Upstream patch for this was insufficient, added reworked version. - - - - - 1 changed file: - data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update lame and ming entries in dla-needed

2018-03-17 Thread Hugo Lefeuvre
: 20180317: Patch available and tested. However I am probably not going to upload it since the security team is not + NOTE: interested in patching Jessie and I evaluate regression risks as non negligible. -- leptonlib NOTE: more issues like previous ones @@ -87,7 +86,7 @@ mercurial -- ming

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Claim tiff in dla-needed, now working on CVE-2018-7456

2018-03-17 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 28374bb1 by Hugo Lefeuvre at 2018-03-17T23:10:12+01:00 Claim tiff in dla-needed, now working on CVE-2018-7456 - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Unclaim mupdf in dla-needed.

2018-03-17 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: c18a7307 by Hugo Lefeuvre at 2018-03-17T23:04:45+01:00 Unclaim mupdf in dla-needed. I have finished my work on CVE-2018-6544 and CVE-2018-6187. Let mupdf in the list since CVE-2018-6192 and

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-6187/CVE-2018-6544 ignored in Wheezy

2018-03-17 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: a6b0ee97 by Hugo Lefeuvre at 2018-03-17T23:00:49+01:00 Mark CVE-2018-6187/CVE-2018-6544 ignored in Wheezy Mupdf in Wheezy is most likely not affected by these two rather unimportant issues. - - - - -

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1dd3a439 by security tracker role at 2018-03-17T21:10:22+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] lts: unassign vorbis

2018-03-17 Thread Guido Günther
Guido Günther pushed to branch master at Debian Security Tracker / security-tracker Commits: b2042491 by Guido Günther at 2018-03-17T19:37:48+01:00 lts: unassign vorbis Theres still a fix for one CVE missing but it might make sense to roll out a dla anyway - - - - - 1 changed file: -

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] openjdk-8 DSA

2018-03-17 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: b7defda2 by Moritz Muehlenhoff at 2018-03-17T19:29:29+01:00 openjdk-8 DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] sqlite no-dsa

2018-03-17 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: cf5072f9 by Moritz Muehlenhoff at 2018-03-17T19:20:58+01:00 sqlite no-dsa - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] firefox DSA

2018-03-17 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 6cfbe777 by Moritz Muehlenhoff at 2018-03-17T19:10:34+01:00 firefox DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] fix typo

2018-03-17 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e81ed619 by Moritz Muehlenhoff at 2018-03-17T19:05:28+01:00 fix typo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DSA number for uwsgi update

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 381b by Salvatore Bonaccorso at 2018-03-17T17:38:51+01:00 Reserve DSA number for uwsgi update - - - - - 4 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt -

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: Cleanup trailing whitespaces

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bf6c8fd by Salvatore Bonaccorso at 2018-03-17T17:29:14+01:00 Cleanup trailing whitespaces - - - - - cbffc92b by Salvatore Bonaccorso at 2018-03-17T17:29:43+01:00 Add additional reference for

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-7262 as not affected in Debian according to investigation of maintainer

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 956515b3 by Salvatore Bonaccorso at 2018-03-17T17:28:04+01:00 Mark CVE-2018-7262 as not affected in Debian according to investigation of maintainer See: https://bugs.debian.org/891963#15

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] dla-needed.txt: Update note for adminer to justify longer-term squatting of entry.

2018-03-17 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 0fa24506 by Chris Lamb at 2018-03-17T11:19:50-04:00 dla-needed.txt: Update note for adminer to justify longer-term squatting of entry. - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-514{6, 7}/firefox-esr fixed in unstable

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c38d4d8c by Salvatore Bonaccorso at 2018-03-17T15:06:58+01:00 CVE-2018-514{6,7}/firefox-esr fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-514{6, 7}/firefox fixed in unstable

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 46e2806e by Salvatore Bonaccorso at 2018-03-17T15:04:08+01:00 CVE-2018-514{6,7}/firefox fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5233

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 496f6eb7 by Salvatore Bonaccorso at 2018-03-17T14:58:11+01:00 Add CVE-2018-5233 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-8741/squirrelmail assigned

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 52093aa5 by Salvatore Bonaccorso at 2018-03-17T14:48:18+01:00 CVE-2018-8741/squirrelmail assigned - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8740/sqlite3 fixed version in unstable

2018-03-17 Thread László Böszörményi
László Böszörményi pushed to branch master at Debian Security Tracker / security-tracker Commits: 96b18ba5 by Laszlo Boszormenyi (GCS) at 2018-03-17T10:19:33+00:00 Add CVE-2018-8740/sqlite3 fixed version in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] typofix

2018-03-17 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: ae9be892 by Henri Salo at 2018-03-17T12:04:18+02:00 typofix - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add fixed version CVE-2018-5146/libvorbis in unstable

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 48844dc8 by Salvatore Bonaccorso at 2018-03-17T10:50:14+01:00 Add fixed version CVE-2018-5146/libvorbis in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add new squirrelmail issue

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 754bdd6c by Salvatore Bonaccorso at 2018-03-17T10:32:01+01:00 Add new squirrelmail issue - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0a2933f2 by security tracker role at 2018-03-17T09:10:21+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-8740: #893195

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 83be10e0 by Salvatore Bonaccorso at 2018-03-17T10:06:55+01:00 Add bug reference for CVE-2018-8740: #893195 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8740/sqlite3

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c0eef87 by Salvatore Bonaccorso at 2018-03-17T09:54:29+01:00 Add CVE-2018-8740/sqlite3 - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Take uwsgi from dsa-needed list

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d779c243 by Salvatore Bonaccorso at 2018-03-17T09:08:14+01:00 Take uwsgi from dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cb73a334 by Salvatore Bonaccorso at 2018-03-17T08:57:35+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add note for icu

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dcff9379 by Salvatore Bonaccorso at 2018-03-17T08:52:15+01:00 Add note for icu - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-7544

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 89df3472 by Salvatore Bonaccorso at 2018-03-17T08:48:44+01:00 Add CVE-2018-7544 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1324/libcommons-compress-java

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 122dc114 by Salvatore Bonaccorso at 2018-03-17T07:35:12+01:00 Add CVE-2018-1324/libcommons-compress-java - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1324/libcommons-compress-java: #893174

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2c8695e9 by Salvatore Bonaccorso at 2018-03-17T08:03:14+01:00 Add bug reference for CVE-2018-1324/libcommons-compress-java: #893174 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1324 as no-dsa

2018-03-17 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0b7d3a4e by Salvatore Bonaccorso at 2018-03-17T08:02:30+01:00 Mark CVE-2018-1324 as no-dsa - - - - - 1 changed file: - data/CVE/list Changes: =