Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker
Commits: fe7f0db0 by Emilio Pozuelo Monfort at 2018-11-27T16:40:30Z harfbuzz n/a in jessie - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes: ===================================== data/CVE/list ===================================== @@ -3380,6 +3380,7 @@ CVE-2018-19278 (Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-28127 CVE-2015-9274 (HarfBuzz before 1.0.4 allows remote attackers to cause a denial of ...) - harfbuzz 1.2.6-1 + [jessie] - harfbuzz <not-affected> (Vulnerable code introduced later) NOTE: https://github.com/harfbuzz/harfbuzz/commit/c917965b9e6fe2b21ed6c51559673288fa3af4b7 CVE-2019-0235 RESERVED ===================================== data/dla-needed.txt ===================================== @@ -18,8 +18,6 @@ enigmail -- ghostscript (Markus Koschany) -- -harfbuzz (Emilio Pozuelo) --- libapache-mod-jk (Roberto C. Sánchez) NOTE: 20181123: Packages ready, testing complete, waiting on security team feedback, NOTE: 20181123: as this work includes an updated package for stretch. (roberto) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fe7f0db009707ce7adcfeb1e92915327d77e7372 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fe7f0db009707ce7adcfeb1e92915327d77e7372 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits