Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
f665f979 by Salvatore Bonaccorso at 2019-08-06T05:15:02Z
flif was removed from experimental now as well (Cf. #933898 for reasoning)

- - - - -
3a741d80 by Salvatore Bonaccorso at 2019-08-06T05:15:52Z
Track flif as removed package

- - - - -


2 changed files:

- data/CVE/list
- data/packages/removed-packages


Changes:

=====================================
data/CVE/list
=====================================
@@ -1299,7 +1299,6 @@ CVE-2019-14375
 CVE-2019-14374
        RESERVED
 CVE-2019-14373 (An issue was discovered in image_save_png in 
image/image-png.cpp in Fr ...)
-       [experimental] - flif <unfixed>
        - flif <removed>
        NOTE: https://github.com/FLIF-hub/FLIF/issues/541
 CVE-2019-14372 (In Libav 12.3, there is an infinite loop in the function 
wv_read_block ...)
@@ -52843,7 +52842,6 @@ CVE-2018-14878 (JetBrains dotPeek before 2018.2 and 
ReSharper Ultimate before 20
 CVE-2018-14877 (An issue was discovered in WeaselCMS v0.3.5. XSS exists via 
Site Langu ...)
        NOT-FOR-US: WeaselCMS
 CVE-2018-14876 (An issue was discovered in image_save_png in 
image/image-png.cpp in Fr ...)
-       [experimental] - flif <unfixed>
        - flif <removed>
        NOTE: https://github.com/FLIF-hub/FLIF/issues/520
 CVE-2018-14875 (An issue was discovered in the Core and Portal modules in 
Polaris FT I ...)
@@ -60324,7 +60322,6 @@ CVE-2018-12111 (Cross-site scripting (XSS) 
vulnerability in the Canon PrintMe EF
 CVE-2018-12110 (portfolioCMS 1.0.5 has SQL Injection via the 
admin/portfolio.php previ ...)
        NOT-FOR-US: portfolioCMS
 CVE-2018-12109 (An issue was discovered in Free Lossless Image Format (FLIF) 
0.3. The  ...)
-       [experimental] - flif <unfixed>
        - flif <removed> (bug #902196)
        NOTE: https://github.com/FLIF-hub/FLIF/issues/513
 CVE-2018-12108 (An issue was discovered in Dropbox Lepton 1.2.1. The 
validateAndCompre ...)
@@ -62011,7 +62008,6 @@ CVE-2018-11508 (The compat_get_timex function in 
kernel/compat.c in the Linux ke
        NOTE: https://bugs.chromium.org/p/project-zero/issues/detail?id=1574
        NOTE: Fixed by: 
https://git.kernel.org/linus/0a0b98734479aa5b3c671d5190e86273372cab95
 CVE-2018-11507 (An issue was discovered in Free Lossless Image Format (FLIF) 
0.3. An a ...)
-       [experimental] - flif <unfixed>
        - flif <removed> (bug #902188)
        NOTE: https://github.com/FLIF-hub/FLIF/issues/509
 CVE-2018-11506 (The sr_do_ioctl function in drivers/scsi/sr_ioctl.c in the 
Linux kerne ...)
@@ -63456,11 +63452,9 @@ CVE-2018-10974 (In 2345 Security Guard 3.7, the driver 
file (2345BdPcSafe.sys, X
 CVE-2018-10973 (An integer overflow in the transferMulti function of a smart 
contract  ...)
        NOT-FOR-US: KoreaShow
 CVE-2018-10972 (An issue was discovered in Free Lossless Image Format (FLIF) 
0.3. The  ...)
-       [experimental] - flif <unfixed>
        - flif <removed> (bug #898407)
        NOTE: https://github.com/FLIF-hub/FLIF/issues/503
 CVE-2018-10971 (An issue was discovered in Free Lossless Image Format (FLIF) 
0.3. The  ...)
-       [experimental] - flif <unfixed>
        - flif <removed> (bug #898406)
        NOTE: https://github.com/FLIF-hub/FLIF/issues/501
 CVE-2018-10970


=====================================
data/packages/removed-packages
=====================================
@@ -699,3 +699,4 @@ ceph-deploy
 gcc-5
 pnp4nagios
 freebsd-utils
+flif



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/compare/9826b01ffd1c14ca0d31e2e2f08f1b202f655641...3a741d8082a72191e0eef3c2fb4cbb688762c7db

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/compare/9826b01ffd1c14ca0d31e2e2f08f1b202f655641...3a741d8082a72191e0eef3c2fb4cbb688762c7db
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to