[Secure-testing-commits] r24815 - data

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-18 19:08:13 + (Wed, 18 Dec 2013) New Revision: 24815 Modified: data/dsa-needed.txt Log: Add curl to dsa-needed Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-18 19:08:12 UTC

[Secure-testing-commits] r24814 - data

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-18 19:08:12 + (Wed, 18 Dec 2013) New Revision: 24814 Modified: data/dsa-needed.txt Log: Update comment/status for typo3-src Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-18

[Secure-testing-commits] r24816 - data/CVE

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-18 19:18:52 + (Wed, 18 Dec 2013) New Revision: 24816 Modified: data/CVE/list Log: Update entry for CVE-2013-6422/curl Modified: data/CVE/list === --- data/CVE/list 2013-12-18 19:08:13 UTC

[Secure-testing-commits] r24818 - data/DSA

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 05:41:07 + (Thu, 19 Dec 2013) New Revision: 24818 Modified: data/DSA/list Log: Add epoch for xorg-server versions Modified: data/DSA/list === --- data/DSA/list 2013-12-18 21:14:12 UTC

[Secure-testing-commits] r24819 - data/CVE

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 06:36:00 + (Thu, 19 Dec 2013) New Revision: 24819 Modified: data/CVE/list Log: Add CVE-2013-6418/pywbem, part of external check Modified: data/CVE/list === --- data/CVE/list 2013-12-19

[Secure-testing-commits] r24820 - data/CVE

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 06:37:36 + (Thu, 19 Dec 2013) New Revision: 24820 Modified: data/CVE/list Log: Add CVE-2013-6444/pywbem, last of external check Modified: data/CVE/list === --- data/CVE/list 2013-12-19

[Secure-testing-commits] r24822 - data/CVE

2013-12-18 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 07:48:48 + (Thu, 19 Dec 2013) New Revision: 24822 Modified: data/CVE/list Log: Update entry for libproc-daemon-perl Modified: data/CVE/list === --- data/CVE/list 2013-12-19 07:11:18 UTC

[Secure-testing-commits] r24826 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 11:38:48 + (Thu, 19 Dec 2013) New Revision: 24826 Modified: data/CVE/list Log: Add source package, vulnerability not verified, left TODO item Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24827 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 15:23:54 + (Thu, 19 Dec 2013) New Revision: 24827 Modified: data/CVE/list Log: Add CVE-2013-6191, CVE-2013-6192, NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-19 11:38:48 UTC

[Secure-testing-commits] r24828 - data

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 15:39:13 + (Thu, 19 Dec 2013) New Revision: 24828 Modified: data/dsa-needed.txt Log: Take care of releasing Alessandro's packages for curl Modified: data/dsa-needed.txt === ---

[Secure-testing-commits] r24829 - in data: . DSA

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-19 15:55:13 + (Thu, 19 Dec 2013) New Revision: 24829 Modified: data/DSA/list data/dsa-needed.txt Log: Reserve DSA number for curl Modified: data/DSA/list === --- data/DSA/list 2013-12-19

[Secure-testing-commits] r24832 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 06:28:23 + (Fri, 20 Dec 2013) New Revision: 24832 Modified: data/CVE/list Log: Add CVE-2013-6836/gnumeric from external check Modified: data/CVE/list === --- data/CVE/list 2013-12-19

[Secure-testing-commits] r24833 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 06:30:03 + (Fri, 20 Dec 2013) New Revision: 24833 Modified: data/CVE/list Log: CVE-2013-6439, Candlepin, NFU (from external check) Modified: data/CVE/list === --- data/CVE/list 2013-12-20

[Secure-testing-commits] r24834 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 06:35:06 + (Fri, 20 Dec 2013) New Revision: 24834 Modified: data/CVE/list Log: Run a manual update to get current CVE lists Modified: data/CVE/list === --- data/CVE/list 2013-12-20

[Secure-testing-commits] r24835 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 06:35:13 + (Fri, 20 Dec 2013) New Revision: 24835 Modified: data/CVE/list Log: Remove note Modified: data/CVE/list === --- data/CVE/list 2013-12-20 06:35:06 UTC (rev 24834) +++

[Secure-testing-commits] r24836 - data/CVE

2013-12-19 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 06:35:20 + (Fri, 20 Dec 2013) New Revision: 24836 Modified: data/CVE/list Log: Add back status REJECTED Modified: data/CVE/list === --- data/CVE/list 2013-12-20 06:35:13 UTC (rev 24835)

[Secure-testing-commits] r24840 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 09:51:01 + (Fri, 20 Dec 2013) New Revision: 24840 Modified: data/CVE/list Log: Add fixed version for CVE-2013-6436 Modified: data/CVE/list === --- data/CVE/list 2013-12-20 09:14:10 UTC

[Secure-testing-commits] r24851 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 19:39:41 + (Fri, 20 Dec 2013) New Revision: 24851 Modified: data/CVE/list Log: Remove temporary item for asterisk According to http://www.openwall.com/lists/oss-security/2013/12/20/4 MITRE said this disclosure does not qualify for a CVE ID. Modified:

[Secure-testing-commits] r24852 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-20 19:39:48 + (Fri, 20 Dec 2013) New Revision: 24852 Modified: data/CVE/list Log: small reordering of CVE id's Modified: data/CVE/list === --- data/CVE/list 2013-12-20 19:39:41 UTC (rev

[Secure-testing-commits] r24854 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 06:55:01 + (Sat, 21 Dec 2013) New Revision: 24854 Modified: data/CVE/list Log: Add CVE-2013-6449/openssl Modified: data/CVE/list === --- data/CVE/list 2013-12-20 21:14:11 UTC (rev 24853)

[Secure-testing-commits] r24855 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 06:58:51 + (Sat, 21 Dec 2013) New Revision: 24855 Modified: data/CVE/list Log: Add CVE-2013-6954/libpng Modified: data/CVE/list === --- data/CVE/list 2013-12-21 06:55:01 UTC (rev 24854)

[Secure-testing-commits] r24856 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 07:04:39 + (Sat, 21 Dec 2013) New Revision: 24856 Modified: data/CVE/list Log: Add note about squeeze for CVE-2013-6449 Modified: data/CVE/list === --- data/CVE/list 2013-12-21 06:58:51

[Secure-testing-commits] r24857 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 07:23:48 + (Sat, 21 Dec 2013) New Revision: 24857 Modified: data/CVE/list Log: Add bug referecen for CVE-2013-6449 Modified: data/CVE/list === --- data/CVE/list 2013-12-21 07:04:39 UTC

[Secure-testing-commits] r24858 - data/CVE

2013-12-20 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 07:58:42 + (Sat, 21 Dec 2013) New Revision: 24858 Modified: data/CVE/list Log: Back to undetermined, add TODO item NOTE for reviewer: From first looks trough the code it looks to me that 1.2.49-5/unstable is not affected by this. But a double check is

[Secure-testing-commits] r24860 - data/CVE

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 12:23:42 + (Sat, 21 Dec 2013) New Revision: 24860 Modified: data/CVE/list Log: Add fixed version for chrony issues Modified: data/CVE/list === --- data/CVE/list 2013-12-21 12:20:22 UTC

[Secure-testing-commits] r24861 - data

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 15:04:29 + (Sat, 21 Dec 2013) New Revision: 24861 Modified: data/dsa-needed.txt Log: Add note for libcommons-fileupload-java Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-21

[Secure-testing-commits] r24863 - data

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 18:30:41 + (Sat, 21 Dec 2013) New Revision: 24863 Modified: data/dsa-needed.txt Log: Update comment for libcommons-fileupload-java, progress with help of maintainer Modified: data/dsa-needed.txt

[Secure-testing-commits] r24864 - data/CVE

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 20:05:10 + (Sat, 21 Dec 2013) New Revision: 24864 Modified: data/CVE/list Log: Mark round of NFUs Modified: data/CVE/list === --- data/CVE/list 2013-12-21 18:30:41 UTC (rev 24863) +++

[Secure-testing-commits] r24865 - data/CVE

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 20:12:18 + (Sat, 21 Dec 2013) New Revision: 24865 Modified: data/CVE/list Log: Update entry for CVE-2013-6836/gnumeric Modified: data/CVE/list === --- data/CVE/list 2013-12-21 20:05:10

[Secure-testing-commits] r24867 - data/CVE

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-21 21:20:24 + (Sat, 21 Dec 2013) New Revision: 24867 Modified: data/CVE/list Log: Update CVE-2013-7188, NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-21 21:14:12 UTC (rev 24866)

[Secure-testing-commits] r24868 - data/CVE

2013-12-21 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-22 07:39:50 + (Sun, 22 Dec 2013) New Revision: 24868 Modified: data/CVE/list Log: Add mariadb-5.5 (which is now in unstable) Modified: data/CVE/list === --- data/CVE/list 2013-12-21 21:20:24

[Secure-testing-commits] r24869 - data/CVE

2013-12-22 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-22 14:32:58 + (Sun, 22 Dec 2013) New Revision: 24869 Modified: data/CVE/list Log: Add fixed version for CVE-2013-0248 Modified: data/CVE/list === --- data/CVE/list 2013-12-22 07:39:50 UTC

[Secure-testing-commits] r24875 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 11:14:16 + (Mon, 23 Dec 2013) New Revision: 24875 Modified: data/CVE/list Log: Add fixed version also for unstable Modified: data/CVE/list === --- data/CVE/list 2013-12-22 21:14:11 UTC

[Secure-testing-commits] r24876 - data

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 11:15:59 + (Mon, 23 Dec 2013) New Revision: 24876 Modified: data/dsa-needed.txt Log: Add openssl to dsa-needed Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-23 11:14:16 UTC

[Secure-testing-commits] r24877 - data

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 11:16:00 + (Mon, 23 Dec 2013) New Revision: 24877 Modified: data/dsa-needed.txt Log: Prepare the libcommons-fileupload-java DSA Modified: data/dsa-needed.txt === --- data/dsa-needed.txt

[Secure-testing-commits] r24878 - data

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 12:36:51 + (Mon, 23 Dec 2013) New Revision: 24878 Modified: data/next-point-update.txt Log: Some eglibc CVE fixed for next wheezy point release Modified: data/next-point-update.txt === ---

[Secure-testing-commits] r24879 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 15:46:13 + (Mon, 23 Dec 2013) New Revision: 24879 Modified: data/CVE/list Log: Add NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-23 12:36:51 UTC (rev 24878) +++ data/CVE/list

[Secure-testing-commits] r24880 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 18:20:46 + (Mon, 23 Dec 2013) New Revision: 24880 Modified: data/CVE/list Log: Add note for CVE-2013-7108 A CVE was requested for nagios3, for the same issue as CVE-2013-7108/icinga. If this get a separate CVE, should split of this entry for nagios3.

[Secure-testing-commits] r24881 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 20:41:25 + (Mon, 23 Dec 2013) New Revision: 24881 Modified: data/CVE/list Log: CVE-2013-7203/gitolite3 assigned Modified: data/CVE/list === --- data/CVE/list 2013-12-23 18:20:46 UTC (rev

[Secure-testing-commits] r24882 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 20:48:00 + (Mon, 23 Dec 2013) New Revision: 24882 Modified: data/CVE/list Log: Update entry for CVE-2013-6954/libpng Modified: data/CVE/list === --- data/CVE/list 2013-12-23 20:41:25 UTC

[Secure-testing-commits] r24884 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 21:17:53 + (Mon, 23 Dec 2013) New Revision: 24884 Modified: data/CVE/list Log: Remove notes about rejection status, it is now Modified: data/CVE/list === --- data/CVE/list 2013-12-23

[Secure-testing-commits] r24885 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 21:26:26 + (Mon, 23 Dec 2013) New Revision: 24885 Modified: data/CVE/list Log: Add tow CVE's for devscripts, uploaded to unstable in 2.13.9 Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24886 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 23:00:34 + (Mon, 23 Dec 2013) New Revision: 24886 Modified: data/CVE/list Log: Add NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-23 21:26:26 UTC (rev 24885) +++ data/CVE/list

[Secure-testing-commits] r24887 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 23:03:37 + (Mon, 23 Dec 2013) New Revision: 24887 Modified: data/CVE/list Log: CVE-2013-6717, NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-23 23:00:34 UTC (rev 24886) +++

[Secure-testing-commits] r24888 - data/CVE

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-23 23:07:17 + (Mon, 23 Dec 2013) New Revision: 24888 Modified: data/CVE/list Log: Add two NFU entries, Cisco Modified: data/CVE/list === --- data/CVE/list 2013-12-23 23:03:37 UTC (rev 24887)

[Secure-testing-commits] r24889 - in data: . DSA

2013-12-23 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-24 05:22:27 + (Tue, 24 Dec 2013) New Revision: 24889 Modified: data/DSA/list data/dsa-needed.txt Log: Reserve DSA number for libcommons-fileupload-java Modified: data/DSA/list === ---

[Secure-testing-commits] r24891 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 09:31:14 + (Thu, 26 Dec 2013) New Revision: 24891 Modified: data/CVE/list Log: Add CVE-2013-7205/nagios3 Modified: data/CVE/list === --- data/CVE/list 2013-12-24 09:14:13 UTC (rev 24890)

[Secure-testing-commits] r24893 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 09:43:12 + (Thu, 26 Dec 2013) New Revision: 24893 Modified: data/CVE/list Log: One more NFU, EMC Modified: data/CVE/list === --- data/CVE/list 2013-12-26 09:43:04 UTC (rev 24892) +++

[Secure-testing-commits] r24892 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 09:43:04 + (Thu, 26 Dec 2013) New Revision: 24892 Modified: data/CVE/list Log: Add NFU, EMC Modified: data/CVE/list === --- data/CVE/list 2013-12-26 09:31:14 UTC (rev 24891) +++

[Secure-testing-commits] r24894 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 09:53:55 + (Thu, 26 Dec 2013) New Revision: 24894 Modified: data/CVE/list Log: Add notes for CVE-2013-1753, not checked, left TODO Modified: data/CVE/list === --- data/CVE/list 2013-12-26

[Secure-testing-commits] r24895 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 10:04:41 + (Thu, 26 Dec 2013) New Revision: 24895 Modified: data/CVE/list Log: Add CVE-2013-6441, but this CVE is somehow disputed, see NOTE Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24896 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 22:42:30 + (Thu, 26 Dec 2013) New Revision: 24896 Modified: data/CVE/list Log: Add CVE-2013-4969/puppet Modified: data/CVE/list === --- data/CVE/list 2013-12-26 10:04:41 UTC (rev 24895)

[Secure-testing-commits] r24897 - data

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-26 23:12:26 + (Thu, 26 Dec 2013) New Revision: 24897 Modified: data/next-point-update.txt Log: Add CVE-2013-7038 and CVE-2013-7039 for next poing release of Wheezy Modified: data/next-point-update.txt

[Secure-testing-commits] r24898 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 05:16:06 + (Fri, 27 Dec 2013) New Revision: 24898 Modified: data/CVE/list Log: Add CVE-2013-6459/ruby-will-paginate Modified: data/CVE/list === --- data/CVE/list 2013-12-26 23:12:26 UTC

[Secure-testing-commits] r24899 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 05:29:03 + (Fri, 27 Dec 2013) New Revision: 24899 Modified: data/CVE/list Log: Add two (unchecked) CVEs for nokogiri ruby gem Modified: data/CVE/list === --- data/CVE/list 2013-12-27

[Secure-testing-commits] r24900 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 05:30:01 + (Fri, 27 Dec 2013) New Revision: 24900 Modified: data/CVE/list Log: Add bug reference for ruby-will-paginate issue Modified: data/CVE/list === --- data/CVE/list 2013-12-27

[Secure-testing-commits] r24901 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 06:22:24 + (Fri, 27 Dec 2013) New Revision: 24901 Modified: data/CVE/list Log: Add CVE-2013-7172 Modified: data/CVE/list === --- data/CVE/list 2013-12-27 05:30:01 UTC (rev 24900) +++

[Secure-testing-commits] r24902 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 06:22:31 + (Fri, 27 Dec 2013) New Revision: 24902 Modified: data/CVE/list Log: Add CVE-2013-7171 Modified: data/CVE/list === --- data/CVE/list 2013-12-27 06:22:24 UTC (rev 24901) +++

[Secure-testing-commits] r24903 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 06:31:46 + (Fri, 27 Dec 2013) New Revision: 24903 Modified: data/CVE/list Log: Add todo item for CVE-2013-5268, unclear CVE assignment Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24905 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 07:00:13 + (Fri, 27 Dec 2013) New Revision: 24905 Modified: data/CVE/list Log: Add note for CVE-2013-6837, not verified, left TODO Modified: data/CVE/list === --- data/CVE/list 2013-12-27

[Secure-testing-commits] r24904 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 07:00:05 + (Fri, 27 Dec 2013) New Revision: 24904 Modified: data/CVE/list Log: Add NFUs Modified: data/CVE/list === --- data/CVE/list 2013-12-27 06:31:46 UTC (rev 24903) +++ data/CVE/list

[Secure-testing-commits] r24906 - data/CVE

2013-12-26 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 07:03:55 + (Fri, 27 Dec 2013) New Revision: 24906 Modified: data/CVE/list Log: Add CVE-2013-6979, NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-27 07:00:13 UTC (rev 24905) +++

[Secure-testing-commits] r24907 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 09:59:38 + (Fri, 27 Dec 2013) New Revision: 24907 Modified: data/CVE/list Log: Remove TODO item, CVE is CVE-*2011*-5269, still unclear why two CVEs Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24908 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 14:28:06 + (Fri, 27 Dec 2013) New Revision: 24908 Modified: data/CVE/list Log: Adjust note for CVE-2013-7107 Modified: data/CVE/list === --- data/CVE/list 2013-12-27 09:59:38 UTC (rev

[Secure-testing-commits] r24909 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 14:31:34 + (Fri, 27 Dec 2013) New Revision: 24909 Modified: data/CVE/list Log: Add CVE-2013-7220 and CVE-2013-7221, gnome-shell Modified: data/CVE/list === --- data/CVE/list 2013-12-27

[Secure-testing-commits] r24910 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 15:49:49 + (Fri, 27 Dec 2013) New Revision: 24910 Modified: data/CVE/list Log: Mark webkit issues as nfu, with comment Modified: data/CVE/list === --- data/CVE/list 2013-12-27 14:31:34

[Secure-testing-commits] r24912 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-27 20:31:13 + (Fri, 27 Dec 2013) New Revision: 24912 Modified: data/CVE/list Log: Bug #701112/nginx fixed in unstable Modified: data/CVE/list === --- data/CVE/list 2013-12-27 18:04:21 UTC

[Secure-testing-commits] r24913 - data/CVE

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-28 05:04:59 + (Sat, 28 Dec 2013) New Revision: 24913 Modified: data/CVE/list Log: CVE-2013-6981, NFU Modified: data/CVE/list === --- data/CVE/list 2013-12-27 20:31:13 UTC (rev 24912) +++

[Secure-testing-commits] r24914 - data

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-28 05:43:13 + (Sat, 28 Dec 2013) New Revision: 24914 Modified: data/dsa-needed.txt Log: Add comment for openssl packages Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-28

[Secure-testing-commits] r24915 - data

2013-12-27 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-28 07:14:46 + (Sat, 28 Dec 2013) New Revision: 24915 Modified: data/dsa-needed.txt Log: Checking drupal6 upload for DSA Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-28

[Secure-testing-commits] r24916 - in data: . DSA

2013-12-28 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-28 09:57:33 + (Sat, 28 Dec 2013) New Revision: 24916 Modified: data/DSA/list data/dsa-needed.txt Log: Reserve DSA number for drupal6 in oldstable Modified: data/DSA/list === --- data/DSA/list

[Secure-testing-commits] r24923 - data

2013-12-28 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-28 21:16:18 + (Sat, 28 Dec 2013) New Revision: 24923 Modified: data/dsa-needed.txt Log: Add note for asterisk Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-28 21:14:13 UTC (rev

[Secure-testing-commits] r24925 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:24:11 + (Sun, 29 Dec 2013) New Revision: 24925 Modified: data/CVE/list Log: Add note for CVE-2013-7073, helps reviewing typo3-src upload Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r24927 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:40:34 + (Sun, 29 Dec 2013) New Revision: 24927 Modified: data/CVE/list Log: Add reference for CVE-2013-7082 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:25:19 UTC (rev

[Secure-testing-commits] r24928 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:44:43 + (Sun, 29 Dec 2013) New Revision: 24928 Modified: data/CVE/list Log: Add reference for CVE-2013-7081 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:40:34 UTC (rev

[Secure-testing-commits] r24929 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:46:03 + (Sun, 29 Dec 2013) New Revision: 24929 Modified: data/CVE/list Log: Add reference for CVE-2013-7079 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:44:43 UTC (rev

[Secure-testing-commits] r24930 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:48:55 + (Sun, 29 Dec 2013) New Revision: 24930 Modified: data/CVE/list Log: Add note for CVE-2013-7075 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:46:03 UTC (rev 24929)

[Secure-testing-commits] r24931 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 08:53:35 + (Sun, 29 Dec 2013) New Revision: 24931 Modified: data/CVE/list Log: Add reference for CVE-2013-7076 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:48:55 UTC (rev

[Secure-testing-commits] r24932 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:19:21 + (Sun, 29 Dec 2013) New Revision: 24932 Modified: data/CVE/list Log: Update entry for CVE-2013-7078 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 08:53:35 UTC (rev

[Secure-testing-commits] r24934 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:39:13 + (Sun, 29 Dec 2013) New Revision: 24934 Modified: data/CVE/list Log: Add description for CVE-2013-7079 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 09:36:00 UTC (rev

[Secure-testing-commits] r24937 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:39:33 + (Sun, 29 Dec 2013) New Revision: 24937 Modified: data/CVE/list Log: Add review links for CVE-2013-7074 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 09:39:26 UTC

[Secure-testing-commits] r24936 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:39:26 + (Sun, 29 Dec 2013) New Revision: 24936 Modified: data/CVE/list Log: CVE-2013-7077 does not affect earlier versions Modified: data/CVE/list === --- data/CVE/list 2013-12-29

[Secure-testing-commits] r24935 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:39:19 + (Sun, 29 Dec 2013) New Revision: 24935 Modified: data/CVE/list Log: Update entry for CVE-2013-7080 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 09:39:13 UTC (rev

[Secure-testing-commits] r24938 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:45:27 + (Sun, 29 Dec 2013) New Revision: 24938 Modified: data/CVE/list Log: CVE-2013-7082 is for Typo3 Flow Modified: data/CVE/list === --- data/CVE/list 2013-12-29 09:39:33 UTC (rev

[Secure-testing-commits] r24939 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 09:48:49 + (Sun, 29 Dec 2013) New Revision: 24939 Modified: data/CVE/list Log: Add missing description for CVE-2013-7081 Modified: data/CVE/list === --- data/CVE/list 2013-12-29 09:45:27

[Secure-testing-commits] r24949 - data

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 11:42:25 + (Sun, 29 Dec 2013) New Revision: 24949 Modified: data/dsa-needed.txt Log: Add name to indicate that I'm currently working on the review Modified: data/dsa-needed.txt === ---

[Secure-testing-commits] r24955 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 15:53:04 + (Sun, 29 Dec 2013) New Revision: 24955 Modified: data/CVE/list Log: Add CVE-2013-6889, rush, reported as #733505 Modified: data/CVE/list === --- data/CVE/list 2013-12-29

[Secure-testing-commits] r24956 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 16:02:42 + (Sun, 29 Dec 2013) New Revision: 24956 Modified: data/CVE/list Log: Fix typo, add Minor issue to reason Modified: data/CVE/list === --- data/CVE/list 2013-12-29 15:53:04 UTC

[Secure-testing-commits] r24960 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 16:20:49 + (Sun, 29 Dec 2013) New Revision: 24960 Modified: data/CVE/list Log: Add upstream patch for memcached Modified: data/CVE/list === --- data/CVE/list 2013-12-29 16:10:45 UTC (rev

[Secure-testing-commits] r24966 - data

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 21:27:29 + (Sun, 29 Dec 2013) New Revision: 24966 Modified: data/dsa-needed.txt Log: check memcached for DSA Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-29 19:26:16 UTC

[Secure-testing-commits] r24967 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 22:10:28 + (Sun, 29 Dec 2013) New Revision: 24967 Modified: data/CVE/list Log: Add upstream bugreference for CVE-2013-1426/mahara Modified: data/CVE/list === --- data/CVE/list 2013-12-29

[Secure-testing-commits] r24968 - data

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-29 22:13:18 + (Sun, 29 Dec 2013) New Revision: 24968 Modified: data/dsa-needed.txt Log: Add libspring-java to dsa-needed Modified: data/dsa-needed.txt === --- data/dsa-needed.txt 2013-12-29

[Secure-testing-commits] r24973 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 05:44:31 + (Mon, 30 Dec 2013) New Revision: 24973 Modified: data/CVE/list Log: Add three NFUs Modified: data/CVE/list === --- data/CVE/list 2013-12-30 02:49:44 UTC (rev 24972) +++

[Secure-testing-commits] r24974 - data/CVE

2013-12-29 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 07:21:09 + (Mon, 30 Dec 2013) New Revision: 24974 Modified: data/CVE/list Log: Add temporary item for memcached Modified: data/CVE/list === --- data/CVE/list 2013-12-30 05:44:31 UTC (rev

[Secure-testing-commits] r24975 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 08:16:00 + (Mon, 30 Dec 2013) New Revision: 24975 Modified: data/CVE/list Log: Add note for CVE-2013-1752 Modified: data/CVE/list === --- data/CVE/list 2013-12-30 07:21:09 UTC (rev 24974)

[Secure-testing-commits] r24977 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 15:26:06 + (Mon, 30 Dec 2013) New Revision: 24977 Modified: data/CVE/list Log: Add source package for CVE Modified: data/CVE/list === --- data/CVE/list 2013-12-30 14:47:17 UTC (rev 24976)

[Secure-testing-commits] r24978 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 16:32:04 + (Mon, 30 Dec 2013) New Revision: 24978 Modified: data/CVE/list Log: CVE assigned for memcached Modified: data/CVE/list === --- data/CVE/list 2013-12-30 15:26:06 UTC (rev 24977)

[Secure-testing-commits] r24979 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 16:33:51 + (Mon, 30 Dec 2013) New Revision: 24979 Modified: data/CVE/list Log: Add fixed version for CVE-2013-4152/libspring-java Modified: data/CVE/list === --- data/CVE/list 2013-12-30

[Secure-testing-commits] r24980 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 16:37:01 + (Mon, 30 Dec 2013) New Revision: 24980 Modified: data/CVE/list Log: Add bugreference, clarify status for squeeze Modified: data/CVE/list === --- data/CVE/list 2013-12-30

[Secure-testing-commits] r24981 - data/CVE

2013-12-30 Thread Salvatore Bonaccorso
Author: carnil Date: 2013-12-30 19:14:16 + (Mon, 30 Dec 2013) New Revision: 24981 Modified: data/CVE/list Log: Revert last change to memcached entry for squeeze Even vulnerable code not present, we do not strictly support this security-wise, as sasl authentication is not enabled.

<    2   3   4   5   6   7   8   9   10   11   >