[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] node-moment: old ReDoS: fixed

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 9622c154 by Paul Wise at 2018-03-04T06:44:55+08:00 node-moment: old ReDoS: fixed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] node-moment ReDoS

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 591358c2 by Paul Wise at 2018-03-04T06:43:20+08:00 node-moment ReDoS - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] npm serve NFU

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: cb0e8f05 by Paul Wise at 2018-03-03T22:53:16+08:00 npm serve NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] electron details

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 329f9ae1 by Paul Wise at 2018-03-03T22:44:37+08:00 electron details - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] fastify NFU

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: a2fdb27c by Paul Wise at 2018-03-03T22:41:39+08:00 fastify NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] node-ssri ReDoS

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 2e4f7bfa by Paul Wise at 2018-03-03T22:38:19+08:00 node-ssri ReDoS - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] node-hoek more details

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 48cc46ca by Paul Wise at 2018-03-03T22:32:27+08:00 node-hoek more details - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] SAML NFU

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 18a003d7 by Paul Wise at 2018-03-03T22:24:27+08:00 SAML NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] SAML vulns

2018-03-03 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: bd5dbfd6 by Paul Wise at 2018-03-03T22:18:18+08:00 SAML vulns - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Apple bluetoothd NFUs

2018-02-28 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 9777c9cd by Paul Wise at 2018-03-01T11:53:31+08:00 Apple bluetoothd NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Drop ceph-deploy ITP

2018-02-04 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 7f79ad4f by Paul Wise at 2018-02-05T12:09:15+08:00 Drop ceph-deploy ITP - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] ceph-deploy accepted into Debian

2018-02-04 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c6c4f57 by Paul Wise at 2018-02-05T12:07:51+08:00 ceph-deploy accepted into Debian First version uploaded is newer than the fixed version 1.5.25 - - - - - 1 changed file: - data/CVE/list Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Convert URLs from http to https where it seems safe to do so

2018-01-17 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bd89708 by Paul Wise at 2018-01-17T18:18:16+08:00 Convert URLs from http to https where it seems safe to do so - - - - - 7 changed files: - bin/compare-testing-status - bin/tracker_service.py - doc

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] redmine: RCE

2018-01-09 Thread Paul Wise
Paul Wise pushed to branch master at Debian Security Tracker / security-tracker Commits: 0ccd9c96 by Paul Wise at 2018-01-10T11:32:42+08:00 redmine: RCE - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] r58504 - data/CVE

2017-12-12 Thread Paul Wise
Author: pabs Date: 2017-12-13 03:05:28 + (Wed, 13 Dec 2017) New Revision: 58504 Modified: data/CVE/list Log: ROBOT Attack: add NFUs and notes Modified: data/CVE/list === --- data/CVE/list 2017-12-12 21:16:41 UTC (rev 585

[Secure-testing-commits] r58349 - data

2017-12-07 Thread Paul Wise
Author: pabs Date: 2017-12-08 05:48:14 + (Fri, 08 Dec 2017) New Revision: 58349 Modified: data/embedded-code-copies Log: Convert (embedded) to (embed) (embed) is the correct keyword for the format. Modified: data/embedded-code-copies ===

[Secure-testing-commits] r58348 - data

2017-12-07 Thread Paul Wise
Author: pabs Date: 2017-12-08 05:48:06 + (Fri, 08 Dec 2017) New Revision: 58348 Modified: data/embedded-code-copies Log: List packages that embed woff2 or brotli Modified: data/embedded-code-copies === --- data/embedded-code-c

[Secure-testing-commits] r58046 - bin

2017-11-26 Thread Paul Wise
Author: pabs Date: 2017-11-27 06:38:47 + (Mon, 27 Nov 2017) New Revision: 58046 Modified: bin/tracker_service.py Log: Switch web search links to DuckDuckGo Disconnect Search just redirects to DuckDuckGo now. Also rename the functions from disconnect to web_search in case of future changes

[Secure-testing-commits] r58045 - bin

2017-11-26 Thread Paul Wise
Author: pabs Date: 2017-11-27 06:38:40 + (Mon, 27 Nov 2017) New Revision: 58045 Modified: bin/tracker_service.py Log: Update links to CVEs at the NIST NVD website The current URLs redirect to the new URLs. Modified: bin/tracker_service.py ==

[Secure-testing-commits] r58044 - data/CVE

2017-11-26 Thread Paul Wise
Author: pabs Date: 2017-11-27 04:31:20 + (Mon, 27 Nov 2017) New Revision: 58044 Modified: data/CVE/list Log: mistune: XSS already had a CVE Modified: data/CVE/list === --- data/CVE/list 2017-11-27 04:14:21 UTC (rev 58043

[Secure-testing-commits] r58043 - data/CVE

2017-11-26 Thread Paul Wise
Author: pabs Date: 2017-11-27 04:14:21 + (Mon, 27 Nov 2017) New Revision: 58043 Modified: data/CVE/list Log: mistune: two vulnerabilities Modified: data/CVE/list === --- data/CVE/list 2017-11-27 02:25:28 UTC (rev 58042)

[Secure-testing-commits] r57855 - data/CVE

2017-11-20 Thread Paul Wise
Author: pabs Date: 2017-11-20 15:56:49 + (Mon, 20 Nov 2017) New Revision: 57855 Modified: data/CVE/list Log: busybox: autocompletion escape sequence vulnerability Modified: data/CVE/list === --- data/CVE/list 2017-11-20

[Secure-testing-commits] r57601 - data/CVE

2017-11-13 Thread Paul Wise
Author: pabs Date: 2017-11-13 13:57:10 + (Mon, 13 Nov 2017) New Revision: 57601 Modified: data/CVE/list Log: redmine: email reminder issue Modified: data/CVE/list === --- data/CVE/list 2017-11-13 13:44:27 UTC (rev 57600)

[Secure-testing-commits] r56781 - data/CVE

2017-10-17 Thread Paul Wise
Author: pabs Date: 2017-10-17 10:30:29 + (Tue, 17 Oct 2017) New Revision: 56781 Modified: data/CVE/list Log: redmine: multiple vulnerabilities Modified: data/CVE/list === --- data/CVE/list 2017-10-17 09:24:09 UTC (rev 56

[Secure-testing-commits] r55886 - data/DLA

2017-09-18 Thread Paul Wise
Author: pabs Date: 2017-09-19 02:28:13 + (Tue, 19 Sep 2017) New Revision: 55886 Modified: data/DLA/list Log: Fix ipsec-tools version for DLA-1044-1 CVE-2016-10396 fix Suggested-by: ex-parrot Suggested-in: #debian-security Confirmed-by: debsnap ipsec-tools --first 1:0.8.0-14+deb7u1 --last

[Secure-testing-commits] r55708 - data/CVE

2017-09-12 Thread Paul Wise
Author: pabs Date: 2017-09-13 01:26:21 + (Wed, 13 Sep 2017) New Revision: 55708 Modified: data/CVE/list Log: BlueBourne NFUs Modified: data/CVE/list === --- data/CVE/list 2017-09-12 21:16:58 UTC (rev 55707) +++ data/CVE/

[Secure-testing-commits] r55589 - data/CVE

2017-09-08 Thread Paul Wise
Author: pabs Date: 2017-09-09 06:31:30 + (Sat, 09 Sep 2017) New Revision: 55589 Modified: data/CVE/list Log: u-boot: two issues Modified: data/CVE/list === --- data/CVE/list 2017-09-09 05:30:24 UTC (rev 55588) +++ data/C

[Secure-testing-commits] r55410 - data/CVE

2017-09-03 Thread Paul Wise
Author: pabs Date: 2017-09-03 13:01:12 + (Sun, 03 Sep 2017) New Revision: 55410 Modified: data/CVE/list Log: kanboard CVE list fixes Modified: data/CVE/list === --- data/CVE/list 2017-09-03 12:58:01 UTC (rev 55409) +++ d

[Secure-testing-commits] r54234 - data/CVE

2017-08-03 Thread Paul Wise
Author: pabs Date: 2017-08-03 18:58:56 + (Thu, 03 Aug 2017) New Revision: 54234 Modified: data/CVE/list Log: CVE-2017-12133: glibc use-after-free in error path in clntudp_call Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r53642 - data/CVE

2017-07-18 Thread Paul Wise
Author: pabs Date: 2017-07-19 02:41:16 + (Wed, 19 Jul 2017) New Revision: 53642 Modified: data/CVE/list Log: gsoap: CVE-2017-9765 Modified: data/CVE/list === --- data/CVE/list 2017-07-18 22:33:40 UTC (rev 53641) +++ data

[Secure-testing-commits] r52857 - data

2017-06-23 Thread Paul Wise
Author: pabs Date: 2017-06-24 02:42:32 + (Sat, 24 Jun 2017) New Revision: 52857 Modified: data/embedded-code-copies Log: glibc embeds unicode-data Modified: data/embedded-code-copies === --- data/embedded-code-copies 2017-06

[Secure-testing-commits] r50744 - data

2017-04-17 Thread Paul Wise
Author: pabs Date: 2017-04-18 04:15:29 + (Tue, 18 Apr 2017) New Revision: 50744 Modified: data/embedded-code-copies Log: typo Modified: data/embedded-code-copies === --- data/embedded-code-copies 2017-04-18 04:13:48 UTC (rev

[Secure-testing-commits] r50743 - data

2017-04-17 Thread Paul Wise
Author: pabs Date: 2017-04-18 04:13:48 + (Tue, 18 Apr 2017) New Revision: 50743 Modified: data/embedded-code-copies Log: several packages embed libwebp Modified: data/embedded-code-copies === --- data/embedded-code-copies 20

[Secure-testing-commits] r50422 - data/CVE

2017-04-06 Thread Paul Wise
Author: pabs Date: 2017-04-06 22:49:23 + (Thu, 06 Apr 2017) New Revision: 50422 Modified: data/CVE/list Log: New mediawiki issues fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2017-04-06 22:45:15 UTC (r

[Secure-testing-commits] r50421 - data/CVE

2017-04-06 Thread Paul Wise
Author: pabs Date: 2017-04-06 22:45:15 + (Thu, 06 Apr 2017) New Revision: 50421 Modified: data/CVE/list Log: New mediawiki issues Modified: data/CVE/list === --- data/CVE/list 2017-04-06 21:03:43 UTC (rev 50420) +++ data

[Secure-testing-commits] r50365 - data

2017-04-04 Thread Paul Wise
Author: pabs Date: 2017-04-05 06:17:33 + (Wed, 05 Apr 2017) New Revision: 50365 Modified: data/embedded-code-copies Log: encuentro embeds youtube-dl Modified: data/embedded-code-copies === --- data/embedded-code-copies 2017-

[Secure-testing-commits] r50157 - bin

2017-03-28 Thread Paul Wise
Author: pabs Date: 2017-03-29 05:20:21 + (Wed, 29 Mar 2017) New Revision: 50157 Modified: bin/tracker_service.py Log: Fix typo Modified: bin/tracker_service.py === --- bin/tracker_service.py 2017-03-29 04:48:56 UTC (rev 5

[Secure-testing-commits] r50156 - bin

2017-03-28 Thread Paul Wise
Author: pabs Date: 2017-03-29 04:48:56 + (Wed, 29 Mar 2017) New Revision: 50156 Modified: bin/tracker_service.py Log: Link to DLA details on www.d.o from the Source field (Closes: #761945) Modified: bin/tracker_service.py ===

[Secure-testing-commits] r49760 - data/CVE

2017-03-18 Thread Paul Wise
Author: pabs Date: 2017-03-18 10:34:25 + (Sat, 18 Mar 2017) New Revision: 49760 Modified: data/CVE/list Log: CVE-2016-4657: not NFU as it works on Nintendo Switch too See: https://www.youtube.com/watch?v=xkdPjbaLngE Modified: data/CVE/list =

[Secure-testing-commits] r49060 - bin

2017-02-19 Thread Paul Wise
Author: pabs Date: 2017-02-19 09:49:09 + (Sun, 19 Feb 2017) New Revision: 49060 Modified: bin/compare-nvd-cve Log: Avoid hard-coding the list of years since 2002 Calculate the range based on the current year. Modified: bin/compare-nvd-cve ==

[Secure-testing-commits] r49056 - /

2017-02-19 Thread Paul Wise
Author: pabs Date: 2017-02-19 09:02:19 + (Sun, 19 Feb 2017) New Revision: 49056 Modified: Makefile Log: Use the local mirror instead Modified: Makefile === --- Makefile2017-02-18 21:10:13 UTC (rev 49055) +++ Makefile20

[Secure-testing-commits] r49057 - /

2017-02-19 Thread Paul Wise
Author: pabs Date: 2017-02-19 09:02:25 + (Sun, 19 Feb 2017) New Revision: 49057 Modified: TODO.gitmigration Log: Correct a domain name typo Modified: TODO.gitmigration === --- TODO.gitmigration 2017-02-19 09:02:19 UTC (rev 4

[Secure-testing-commits] r48788 - data/CVE

2017-02-08 Thread Paul Wise
Author: pabs Date: 2017-02-09 05:43:46 + (Thu, 09 Feb 2017) New Revision: 48788 Modified: data/CVE/list Log: CVE-2016-9244 (Ticketbleed): NFU: proprietary F5 TLS stack Modified: data/CVE/list === --- data/CVE/list 2017-0

[Secure-testing-commits] r48787 - data/CVE

2017-02-08 Thread Paul Wise
Author: pabs Date: 2017-02-09 04:59:58 + (Thu, 09 Feb 2017) New Revision: 48787 Modified: data/CVE/list Log: CVE-2016-6271 is from src:bzrtp and has an upstream patch Modified: data/CVE/list === --- data/CVE/list 2017-02

[Secure-testing-commits] r48464 - data

2017-01-27 Thread Paul Wise
Author: pabs Date: 2017-01-28 06:42:24 + (Sat, 28 Jan 2017) New Revision: 48464 Modified: data/embedded-code-copies Log: More boost versions that have unicode-data copies Modified: data/embedded-code-copies === --- data/embedd

[Secure-testing-commits] r48211 - data/CVE

2017-01-19 Thread Paul Wise
Author: pabs Date: 2017-01-20 02:10:39 + (Fri, 20 Jan 2017) New Revision: 48211 Modified: data/CVE/list Log: Linux: kvm: use-after-free issue while creating devices Reported-by: hexa- Reported-in: #debian-security Modified: data/CVE/list ===

[Secure-testing-commits] r47120 - data/CVE

2016-12-15 Thread Paul Wise
Author: pabs Date: 2016-12-16 03:36:32 + (Fri, 16 Dec 2016) New Revision: 47120 Modified: data/CVE/list Log: Add another reference for the apport bug Modified: data/CVE/list === --- data/CVE/list 2016-12-15 21:45:31 UTC

[Secure-testing-commits] r47083 - data/CVE

2016-12-14 Thread Paul Wise
Author: pabs Date: 2016-12-15 03:38:42 + (Thu, 15 Dec 2016) New Revision: 47083 Modified: data/CVE/list Log: one more nvidia source package Modified: data/CVE/list === --- data/CVE/list 2016-12-15 03:13:46 UTC (rev 47082

[Secure-testing-commits] r47082 - data/CVE

2016-12-14 Thread Paul Wise
Author: pabs Date: 2016-12-15 03:13:46 + (Thu, 15 Dec 2016) New Revision: 47082 Modified: data/CVE/list Log: most: CVE-2016-1253: fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2016-12-15 03:11:45 UTC (r

[Secure-testing-commits] r47081 - data/CVE

2016-12-14 Thread Paul Wise
Author: pabs Date: 2016-12-15 03:11:45 + (Thu, 15 Dec 2016) New Revision: 47081 Modified: data/CVE/list Log: nvidia-graphics-drivers DoS Modified: data/CVE/list === --- data/CVE/list 2016-12-15 00:53:45 UTC (rev 47080) +

[Secure-testing-commits] r47040 - data/CVE

2016-12-13 Thread Paul Wise
Author: pabs Date: 2016-12-14 03:02:54 + (Wed, 14 Dec 2016) New Revision: 47040 Modified: data/CVE/list Log: New Firefox issues fixed Modified: data/CVE/list === --- data/CVE/list 2016-12-13 23:09:49 UTC (rev 47039) +++

[Secure-testing-commits] r46836 - data/CVE

2016-12-06 Thread Paul Wise
Author: pabs Date: 2016-12-06 22:25:20 + (Tue, 06 Dec 2016) New Revision: 46836 Modified: data/CVE/list Log: roundcube: Command Execution via Email Modified: data/CVE/list === --- data/CVE/list 2016-12-06 21:19:53 UTC (r

[Secure-testing-commits] r46804 - data/CVE

2016-12-05 Thread Paul Wise
Author: pabs Date: 2016-12-06 05:26:16 + (Tue, 06 Dec 2016) New Revision: 46804 Modified: data/CVE/list Log: New Linux local root exploit Modified: data/CVE/list === --- data/CVE/list 2016-12-06 05:19:45 UTC (rev 46803)

[Secure-testing-commits] r46669 - data/CVE

2016-11-30 Thread Paul Wise
Author: pabs Date: 2016-12-01 01:58:57 + (Thu, 01 Dec 2016) New Revision: 46669 Modified: data/CVE/list Log: New Firefox CVE Modified: data/CVE/list === --- data/CVE/list 2016-11-30 22:03:43 UTC (rev 46668) +++ data/CVE/

[Secure-testing-commits] r45534 - data/CVE

2016-10-23 Thread Paul Wise
Author: pabs Date: 2016-10-24 03:15:26 + (Mon, 24 Oct 2016) New Revision: 45534 Modified: data/CVE/list Log: Drammer was assigned CVE-2016-6728 Modified: data/CVE/list === --- data/CVE/list 2016-10-23 21:24:05 UTC (rev 4

[Secure-testing-commits] r44663 - data

2016-09-16 Thread Paul Wise
Author: pabs Date: 2016-09-17 02:08:48 + (Sat, 17 Sep 2016) New Revision: 44663 Modified: data/embedded-code-copies Log: libsquish now accepted Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-09-17

[Secure-testing-commits] r44662 - data

2016-09-16 Thread Paul Wise
Author: pabs Date: 2016-09-17 01:21:05 + (Sat, 17 Sep 2016) New Revision: 44662 Modified: data/embedded-code-copies Log: Add bug numbers for libsquish embedded code copies Suggested-by: Wookey Suggested-in: <20160917010345.gv7...@mail.wookware.org> Modified: data/embedded-code-copies ===

[Secure-testing-commits] r44595 - data

2016-09-14 Thread Paul Wise
Author: pabs Date: 2016-09-15 03:12:45 + (Thu, 15 Sep 2016) New Revision: 44595 Modified: data/embedded-code-copies Log: quesoglc removed use of embedded glew in 0.7.2-2 Modified: data/embedded-code-copies === --- data/embedde

[Secure-testing-commits] r44500 - data

2016-09-11 Thread Paul Wise
Author: pabs Date: 2016-09-11 07:13:30 + (Sun, 11 Sep 2016) New Revision: 44500 Modified: data/embedded-code-copies Log: gridengine embeds tcsh (see #833995) Modified: data/embedded-code-copies === --- data/embedded-code-copie

[Secure-testing-commits] r44399 - data

2016-09-07 Thread Paul Wise
Author: pabs Date: 2016-09-08 01:35:50 + (Thu, 08 Sep 2016) New Revision: 44399 Modified: data/embedded-code-copies Log: Update information about Android forks of various things Modified: data/embedded-code-copies === --- data

[Secure-testing-commits] r44398 - data/CVE

2016-09-07 Thread Paul Wise
Author: pabs Date: 2016-09-08 01:34:29 + (Thu, 08 Sep 2016) New Revision: 44398 Modified: data/CVE/list Log: android-platform-external-libunwind has not fixed CVE-2015-3239 Modified: data/CVE/list === --- data/CVE/list 2

[Secure-testing-commits] r44283 - data

2016-09-02 Thread Paul Wise
Author: pabs Date: 2016-09-03 03:27:47 + (Sat, 03 Sep 2016) New Revision: 44283 Modified: data/embedded-code-copies Log: Update libsquish embedded-code-copies information See-also: <20160902115618.gz32...@mail.wookware.org> Modified: data/embedded-code-copies =

[Secure-testing-commits] r44249 - data

2016-08-31 Thread Paul Wise
Author: pabs Date: 2016-09-01 02:34:06 + (Thu, 01 Sep 2016) New Revision: 44249 Modified: data/embedded-code-copies Log: libsquish is embedded in several packages Modified: data/embedded-code-copies === --- data/embedded-code-

[Secure-testing-commits] r43276 - data/CVE

2016-07-19 Thread Paul Wise
Author: pabs Date: 2016-07-19 10:46:00 + (Tue, 19 Jul 2016) New Revision: 43276 Modified: data/CVE/list Log: CVE-2016-5080 is NFU: Objective Systems Inc. ASN1C compiler Modified: data/CVE/list === --- data/CVE/list 2016-

[Secure-testing-commits] r43223 - bin

2016-07-15 Thread Paul Wise
Author: pabs Date: 2016-07-15 15:06:37 + (Fri, 15 Jul 2016) New Revision: 43223 Modified: bin/tracker_service.py Log: testing.pl is gone, update links to it to qa.d.o/excuses.php Modified: bin/tracker_service.py === --- bin/tr

[Secure-testing-commits] r42559 - data

2016-06-15 Thread Paul Wise
Author: pabs Date: 2016-06-16 01:25:14 + (Thu, 16 Jun 2016) New Revision: 42559 Modified: data/embedded-code-copies Log: cgit embeds git Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-06-16 01:23:

[Secure-testing-commits] r42558 - data/CVE

2016-06-15 Thread Paul Wise
Author: pabs Date: 2016-06-16 01:23:01 + (Thu, 16 Jun 2016) New Revision: 42558 Modified: data/CVE/list Log: CVE-2016-2315: also fixed in cgit 1.0+git2.8.3-1 (bug #827405) Reported-by: victory on #debian-security Modified: data/CVE/list

[Secure-testing-commits] r42525 - data/CVE

2016-06-14 Thread Paul Wise
Author: pabs Date: 2016-06-14 12:16:13 + (Tue, 14 Jun 2016) New Revision: 42525 Modified: data/CVE/list Log: CVE-2016-4010 is NFU (Magento) Thanks-to: Sander Bos Modified: data/CVE/list === --- data/CVE/list 2016-06-14

[Secure-testing-commits] r42523 - data

2016-06-14 Thread Paul Wise
Author: pabs Date: 2016-06-14 12:08:24 + (Tue, 14 Jun 2016) New Revision: 42523 Modified: data/embedded-code-copies Log: edk2 copy of openssl is apparently modified Reported-by: vorlon on #debian-devel Modified: data/embedded-code-copies ===

[Secure-testing-commits] r42521 - data

2016-06-14 Thread Paul Wise
Author: pabs Date: 2016-06-14 09:46:12 + (Tue, 14 Jun 2016) New Revision: 42521 Modified: data/embedded-code-copies Log: edk2 embeds openssl Reported-by: sarnold on #debian-security See-also: https://sources.debian.net/src/edk2/unstable/CryptoPkg/Library/OpensslLib/openssl-1.0.2g/ Modifi

[Secure-testing-commits] r42500 - bin

2016-06-13 Thread Paul Wise
Author: pabs Date: 2016-06-13 07:51:32 + (Mon, 13 Jun 2016) New Revision: 42500 Modified: bin/tracker_service.py Log: Link to the CERT database too since they update before Mitre/NVD these days Modified: bin/tracker_service.py ===

[Secure-testing-commits] r42497 - data/CVE

2016-06-12 Thread Paul Wise
Author: pabs Date: 2016-06-13 06:37:40 + (Mon, 13 Jun 2016) New Revision: 42497 Modified: data/CVE/list Log: Add writeup for CVE-2016-1681 (aka PDFium) Modified: data/CVE/list === --- data/CVE/list 2016-06-13 05:04:12 UT

[Secure-testing-commits] r42429 - data/CVE

2016-06-09 Thread Paul Wise
Author: pabs Date: 2016-06-10 04:06:55 + (Fri, 10 Jun 2016) New Revision: 42429 Modified: data/CVE/list Log: wget: new issue: CVE-2016-4971 fixed in 1.18 Modified: data/CVE/list === --- data/CVE/list 2016-06-09 21:10:11

[Secure-testing-commits] r42367 - data

2016-06-06 Thread Paul Wise
Author: pabs Date: 2016-06-07 06:41:17 + (Tue, 07 Jun 2016) New Revision: 42367 Modified: data/embedded-code-copies Log: flatpak embeds bubblewrap Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-06

[Secure-testing-commits] r42298 - data/CVE

2016-06-03 Thread Paul Wise
Author: pabs Date: 2016-06-04 02:50:54 + (Sat, 04 Jun 2016) New Revision: 42298 Modified: data/CVE/list Log: CVE-2015-2575: actually in mysql-connector-java, fixed in unstable Reported-by: tyhicks in #debian-security Modified: data/CVE/list

[Secure-testing-commits] r41800 - data

2016-05-17 Thread Paul Wise
Author: pabs Date: 2016-05-17 13:06:13 + (Tue, 17 May 2016) New Revision: 41800 Modified: data/embedded-code-copies Log: icdiff is a fork of the Python difflib Suggested-by: Sascha Steinbiss Suggested-in: <0631beae-19fc-455c-b555-4cead4627...@steinbiss.name> Modified: data/embedded-code-

[Secure-testing-commits] r41799 - data

2016-05-17 Thread Paul Wise
Author: pabs Date: 2016-05-17 13:05:58 + (Tue, 17 May 2016) New Revision: 41799 Modified: data/embedded-code-copies Log: Update python versions Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-05-17

[Secure-testing-commits] r41794 - data

2016-05-17 Thread Paul Wise
Author: pabs Date: 2016-05-17 10:46:43 + (Tue, 17 May 2016) New Revision: 41794 Modified: data/embedded-code-copies Log: The copy of zlib in rsync is modified Modified: data/embedded-code-copies === --- data/embedded-code-copi

[Secure-testing-commits] r41549 - data/CVE

2016-05-08 Thread Paul Wise
Author: pabs Date: 2016-05-09 05:41:51 + (Mon, 09 May 2016) New Revision: 41549 Modified: data/CVE/list Log: Update status for CVE-2012-5564 Modified: data/CVE/list === --- data/CVE/list 2016-05-09 05:06:13 UTC (rev 4154

[Secure-testing-commits] r41548 - data/CVE

2016-05-08 Thread Paul Wise
Author: pabs Date: 2016-05-09 05:06:13 + (Mon, 09 May 2016) New Revision: 41548 Modified: data/CVE/list Log: Update info for CVE-2014-1909 Modified: data/CVE/list === --- data/CVE/list 2016-05-09 04:27:32 UTC (rev 41547)

[Secure-testing-commits] r41546 - in data: . CVE

2016-05-08 Thread Paul Wise
Author: pabs Date: 2016-05-09 04:04:40 + (Mon, 09 May 2016) New Revision: 41546 Modified: data/CVE/list data/embedded-code-copies Log: adb got moved from android-tools to android-platform-system-core Modified: data/CVE/list ===

[Secure-testing-commits] r41500 - data

2016-05-06 Thread Paul Wise
Author: pabs Date: 2016-05-07 06:17:16 + (Sat, 07 May 2016) New Revision: 41500 Modified: data/embedded-code-copies Log: Update unicode-data embeds Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-0

[Secure-testing-commits] r41366 - data/CVE

2016-05-02 Thread Paul Wise
Author: pabs Date: 2016-05-03 06:10:44 + (Tue, 03 May 2016) New Revision: 41366 Modified: data/CVE/list Log: Add bug for gitlab CVE-2016-4340 Modified: data/CVE/list === --- data/CVE/list 2016-05-03 05:51:42 UTC (rev 413

[Secure-testing-commits] r41362 - data/CVE

2016-05-02 Thread Paul Wise
Author: pabs Date: 2016-05-03 05:31:54 + (Tue, 03 May 2016) New Revision: 41362 Modified: data/CVE/list Log: gitlab: CVE-2016-4340: details released Modified: data/CVE/list === --- data/CVE/list 2016-05-02 21:10:11 UTC (

[Secure-testing-commits] r41268 - data/CVE

2016-04-28 Thread Paul Wise
Author: pabs Date: 2016-04-29 01:51:15 + (Fri, 29 Apr 2016) New Revision: 41268 Modified: data/CVE/list Log: Upcoming gitlab security issue Modified: data/CVE/list === --- data/CVE/list 2016-04-28 21:10:12 UTC (rev 41267

[Secure-testing-commits] r41133 - bin

2016-04-24 Thread Paul Wise
Author: pabs Date: 2016-04-25 05:54:27 + (Mon, 25 Apr 2016) New Revision: 41133 Modified: bin/tracker_service.py Log: Quote searches on disconnect.me Modified: bin/tracker_service.py === --- bin/tracker_service.py 2016-04

[Secure-testing-commits] r41132 - data/CVE

2016-04-24 Thread Paul Wise
Author: pabs Date: 2016-04-25 05:48:58 + (Mon, 25 Apr 2016) New Revision: 41132 Modified: data/CVE/list Log: CVE-2014-1677: NFU Modified: data/CVE/list === --- data/CVE/list 2016-04-25 05:35:04 UTC (rev 41131) +++ data/C

[Secure-testing-commits] r41131 - data/CVE

2016-04-24 Thread Paul Wise
Author: pabs Date: 2016-04-25 05:35:04 + (Mon, 25 Apr 2016) New Revision: 41131 Modified: data/CVE/list Log: A couple of forgotten roundcube issues Modified: data/CVE/list === --- data/CVE/list 2016-04-25 05:04:32 UTC (r

[Secure-testing-commits] r41130 - bin

2016-04-24 Thread Paul Wise
Author: pabs Date: 2016-04-25 05:04:32 + (Mon, 25 Apr 2016) New Revision: 41130 Modified: bin/tracker_service.py Log: Link CVEs to the LWN search interface Modified: bin/tracker_service.py === --- bin/tracker_service.py 2

[Secure-testing-commits] r41107 - check-external

2016-04-24 Thread Paul Wise
Author: pabs Date: 2016-04-24 09:37:32 + (Sun, 24 Apr 2016) New Revision: 41107 Modified: check-external/sources.ini Log: Another potential data source: samba Modified: check-external/sources.ini === --- check-external/sources

[Secure-testing-commits] r40780 - bin

2016-04-06 Thread Paul Wise
Author: pabs Date: 2016-04-06 09:47:34 + (Wed, 06 Apr 2016) New Revision: 40780 Modified: bin/tracker_service.py Log: Drop links to OSVDB OSVDB is now closed officially: https://blog.osvdb.org/2016/04/05/osvdb-fin/ Modified: bin/tracker_service.py

[Secure-testing-commits] r40734 - data

2016-04-03 Thread Paul Wise
Author: pabs Date: 2016-04-03 15:45:50 + (Sun, 03 Apr 2016) New Revision: 40734 Modified: data/embedded-code-copies Log: freedroidrpg embeds lua5.3 Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-0

[Secure-testing-commits] r40667 - data

2016-03-30 Thread Paul Wise
Author: pabs Date: 2016-03-31 02:53:37 + (Thu, 31 Mar 2016) New Revision: 40667 Modified: data/embedded-code-copies Log: libgzstream accepted Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-03-30 2

[Secure-testing-commits] r40656 - data

2016-03-30 Thread Paul Wise
Author: pabs Date: 2016-03-30 08:14:19 + (Wed, 30 Mar 2016) New Revision: 40656 Modified: data/embedded-code-copies Log: gzstream ITP Modified: data/embedded-code-copies === --- data/embedded-code-copies 2016-03-30 06:10:48

[Secure-testing-commits] r40655 - data

2016-03-29 Thread Paul Wise
Author: pabs Date: 2016-03-30 06:10:48 + (Wed, 30 Mar 2016) New Revision: 40655 Modified: data/embedded-code-copies Log: Document gzstream embedded code copies Reported-in: <20160329200151.ga7...@jwilk.net> Modified: data/embedded-code-copies ==

[Secure-testing-commits] r40514 - bin

2016-03-21 Thread Paul Wise
Author: pabs Date: 2016-03-22 06:20:02 + (Tue, 22 Mar 2016) New Revision: 40514 Modified: bin/tracker_service.py Log: Link to the bugtraq mailing list archive search too Modified: bin/tracker_service.py === --- bin/tracker_ser

[Secure-testing-commits] r40422 - bin

2016-03-18 Thread Paul Wise
Author: pabs Date: 2016-03-17 04:54:07 + (Thu, 17 Mar 2016) New Revision: 40422 Modified: bin/tracker_service.py Log: Link to github code/issues searches for CVEs Modified: bin/tracker_service.py === --- bin/tracker_service.py

[Secure-testing-commits] r40285 - data/CVE

2016-03-09 Thread Paul Wise
Author: pabs Date: 2016-03-10 00:58:44 + (Thu, 10 Mar 2016) New Revision: 40285 Modified: data/CVE/list Log: Add note about CVE-2016-1531 Suggested-by: Snader_LB on #debian-security Modified: data/CVE/list === --- data/CVE/li

[Secure-testing-commits] r40252 - in data: CVE DLA

2016-03-08 Thread Paul Wise
Author: pabs Date: 2016-03-09 05:09:26 + (Wed, 09 Mar 2016) New Revision: 40252 Modified: data/CVE/list data/DLA/list Log: Fix some epochs and version numbers Suggested-by: Stephen Quintero Suggested-in: Modified: data/CVE/list ===

[Secure-testing-commits] r40125 - bin

2016-03-02 Thread Paul Wise
Author: pabs Date: 2016-03-02 15:30:29 + (Wed, 02 Mar 2016) New Revision: 40125 Modified: bin/tracker_service.py Log: https for more of the CVE links Modified: bin/tracker_service.py === --- bin/tracker_service.py 2016-03

  1   2   3   >