[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] mark for now CVE-2018-1000074

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e0146897 by Salvatore Bonaccorso at 2018-04-03T07:53:21+02:00 mark for now CVE-2018-174 The used version 1.5.6-5 is defintively not related to any change in owner_command.rb. If the code is

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reorder two entries per source package name

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c6ec8306 by Salvatore Bonaccorso at 2018-04-03T07:48:07+02:00 Reorder two entries per source package name - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2018-0493/remctl

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fc56be01 by Salvatore Bonaccorso at 2018-04-03T07:43:32+02:00 Reference fix for CVE-2018-0493/remctl - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-0493: reference upstream advisory

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 424f42bc by Salvatore Bonaccorso at 2018-04-03T07:38:29+02:00 CVE-2018-0493: reference upstream advisory - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add temporary description entry for CVE-2018-0493

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 78a2dbce by Salvatore Bonaccorso at 2018-04-03T07:34:52+02:00 Add temporary description entry for CVE-2018-0493 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2017-18255: use common short url as per kernel-team patch origin schema

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cc62a054 by Salvatore Bonaccorso at 2018-04-03T07:29:46+02:00 CVE-2017-18255: use common short url as per kernel-team patch origin schema - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-9135 to upstream issue

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 39f67361 by Salvatore Bonaccorso at 2018-04-03T07:19:44+02:00 Add reference for CVE-2018-9135 to upstream issue - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Remove mentioning of CVE-2017-1000116 for DLA-1331-1

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a2f7ffd6 by Salvatore Bonaccorso at 2018-04-03T07:13:54+02:00 Remove mentioning of CVE-2017-1000116 for DLA-1331-1 Reason: The issue fixed in DLA-1331-1 with regard to CVE-2017-1000116 is not a

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2017-11509/firebird*

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ae8473ba by Salvatore Bonaccorso at 2018-04-03T06:49:42+02:00 Add CVE-2017-11509/firebird* - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-0492/beep

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c3512bf by Salvatore Bonaccorso at 2018-04-03T06:46:05+02:00 Add bug reference for CVE-2018-0492/beep - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-0492/beep

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 33446f10 by Salvatore Bonaccorso at 2018-04-03T06:38:38+02:00 Add CVE-2018-0492/beep - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] new botan issue

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7ab032a9 by Moritz Muehlenhoff at 2018-04-02T22:46:43+02:00 new botan issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] NFU

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f5ab4ae2 by Moritz Muehlenhoff at 2018-04-02T22:43:41+02:00 NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] NFUs

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 80e516f8 by Moritz Muehlenhoff at 2018-04-02T22:40:18+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] beep DSA

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 625b012e by Moritz Muehlenhoff at 2018-04-02T22:25:42+02:00 beep DSA - - - - - 1 changed file: - data/DSA/list Changes: = data/DSA/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] sam2p ignored

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4001ea96 by Moritz Muehlenhoff at 2018-04-02T22:23:15+02:00 sam2p ignored - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e9426be7 by security tracker role at 2018-04-02T20:10:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] new HHVM issue

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 4e94bbe4 by Moritz Muehlenhoff at 2018-04-02T17:15:17+02:00 new HHVM issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] thrift unimportant

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ee12b179 by Moritz Muehlenhoff at 2018-04-02T13:11:11+02:00 thrift unimportant - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] several web2py issue n/a, mark the existing no-dsa entries as

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: f5361dc0 by Moritz Muehlenhoff at 2018-04-02T13:04:35+02:00 several web2py issue n/a, mark the existing no-dsa entries as ignored unixodbc no-dsa ntp postponed podofo CVE dupe - - - - - 1

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] NFUs

2018-04-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 95d124f3 by Moritz Muehlenhoff at 2018-04-02T11:10:22+02:00 NFUs drop one TODO, no real information around - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-04-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 77af6ecb by security tracker role at 2018-04-02T08:10:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 4 commits: jruby 1.5.6-5 vulnerable to CVE-2018-1000074

2018-04-02 Thread Chris Lamb
NOTE: Details not public. Yet. See https://lists.debian.org/msgid-search/20180208212643.GB7792@pisco.westfalen.local @@ -105,6 +107,9 @@ qemu-kvm ruby-rack-protection -- ruby1.9.1 (Santiago R.R.) + NOTE: 20180402: Also vulnerable to CVE-2018-174. (lamby) +-- +rubygems -- sam2p (Markus