[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-7689

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e7661577 by Salvatore Bonaccorso at 2018-07-15T00:17:12+02:00 Add bug reference for CVE-2018-7689 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add fixed version for src:xen in unstable

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6d8c84b1 by Salvatore Bonaccorso at 2018-07-15T00:14:16+02:00 Add fixed version for src:xen in unstable At point release time for 9.5 given there was no more recent version in unstable for

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-7688

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fb680827 by Salvatore Bonaccorso at 2018-07-15T00:08:41+02:00 Add bug reference for CVE-2018-7688 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add znc to dla-needed.txt

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 37161c76 by Markus Koschany at 2018-07-14T23:59:18+02:00 Add znc to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Update information for CVE-2017-14528/imagemagick

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f11a9444 by Salvatore Bonaccorso at 2018-07-14T23:43:11+02:00 Update information for CVE-2017-14528/imagemagick Follow maintainer triage on the issue further. Additionally mark the issue as

[Git][security-tracker-team/security-tracker][master] Mark open ceph issues as no-dsa for Jessie.

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: c303bffb by Markus Koschany at 2018-07-14T23:32:21+02:00 Mark open ceph issues as no-dsa for Jessie. This can only be fixed by making rather intrusive code changes. In addition two issues require an

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2006-2191

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0cf8776b by Salvatore Bonaccorso at 2018-07-14T22:43:15+02:00 Update information on CVE-2006-2191 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add znc to dsa-needed list

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: da5e1f36 by Salvatore Bonaccorso at 2018-07-14T22:35:17+02:00 Add znc to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add bug reference for znc path traversal issue: #903788

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bf54d41d by Salvatore Bonaccorso at 2018-07-14T22:11:56+02:00 Add bug reference for znc path traversal issue: #903788 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8541cbd5 by security tracker role at 2018-07-14T20:10:15+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add ant to dla-needed.txt

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: fd8f9434 by Markus Koschany at 2018-07-14T22:09:15+02:00 Add ant to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add bug reference for znc issue: #903787

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 111031fd by Salvatore Bonaccorso at 2018-07-14T22:04:34+02:00 Add bug reference for znc issue: #903787 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add two new znc issues

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8312a024 by Salvatore Bonaccorso at 2018-07-14T22:03:53+02:00 Add two new znc issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add jetty8 to dla-needed.txt

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 85557616 by Markus Koschany at 2018-07-14T21:56:37+02:00 Add jetty8 to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-0499,xapian-core: not-affected, vulnerable code not present.

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fdf5e9d by Markus Koschany at 2018-07-14T21:54:31+02:00 CVE-2018-0499,xapian-core: not-affected, vulnerable code not present. - - - - - e3a24c49 by Markus Koschany at 2018-07-14T21:55:11+02:00 Merge

[Git][security-tracker-team/security-tracker][master] CVE-2017-14528/imagemagick not yet fixed in unstable

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 66d90346 by Salvatore Bonaccorso at 2018-07-14T21:51:08+02:00 CVE-2017-14528/imagemagick not yet fixed in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] radare2: Mark open issues as no-dsa for Jessie.

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 72454181 by Markus Koschany at 2018-07-14T21:42:38+02:00 radare2: Mark open issues as no-dsa for Jessie. Minor issues, not used by any sponsor. - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add policykit-1 to dla-needed.txt

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: a831d953 by Markus Koschany at 2018-07-14T21:30:29+02:00 Add policykit-1 to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Remove no-dsa from busybox issues. They will be fixed in a future DLA.

2018-07-14 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: dd39be8f by Markus Koschany at 2018-07-14T21:11:32+02:00 Remove no-dsa from busybox issues. They will be fixed in a future DLA. - - - - - 9708c7d8 by Markus Koschany at 2018-07-14T21:13:25+02:00

[Git][security-tracker-team/security-tracker][master] 2 commits: NFUs

2018-07-14 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: fbcc1760 by Moritz Muehlenhoff at 2018-07-14T20:41:35+02:00 NFUs - - - - - c4a9edfd by Moritz Muehlenhoff at 2018-07-14T20:44:48+02:00 imagemagick DSA - - - - - 3 changed files: -

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14046/exiv2

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b0120d23 by Salvatore Bonaccorso at 2018-07-14T14:10:31+02:00 Add bug reference for CVE-2018-14046/exiv2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reference proposed fix for CVE-2018-14046/exiv2

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 158f478d by Salvatore Bonaccorso at 2018-07-14T13:56:35+02:00 Reference proposed fix for CVE-2018-14046/exiv2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14046/exiv2

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d56a3a82 by Salvatore Bonaccorso at 2018-07-14T13:52:39+02:00 Add CVE-2018-14046/exiv2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14047/pngwriter

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0cb35404 by Salvatore Bonaccorso at 2018-07-14T13:23:49+02:00 Add CVE-2018-14047/pngwriter - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fbb40331 by Salvatore Bonaccorso at 2018-07-14T13:19:56+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1426-1 for cups

2018-07-14 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 4eb8679a by Emilio Pozuelo Monfort at 2018-07-14T11:36:27+02:00 Reserve DLA-1426-1 for cups - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Track CVE fixes for two minor issues for postgrsql-9.6 now included in 9.5

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 589f1dc4 by Salvatore Bonaccorso at 2018-07-14T11:29:57+02:00 Track CVE fixes for two minor issues for postgrsql-9.6 now included in 9.5 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Three more CVEs fixed due to new upstream upload for nvidia-graphics-drivers

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 81dd0d00 by Salvatore Bonaccorso at 2018-07-14T11:27:54+02:00 Three more CVEs fixed due to new upstream upload for nvidia-graphics-drivers - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1425-1 for thunderbird

2018-07-14 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: eb2d09ae by Emilio Pozuelo Monfort at 2018-07-14T11:20:46+02:00 Reserve DLA-1425-1 for thunderbird - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Merge fixes included in Stretch 9.5 point release

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d3a79cc0 by Salvatore Bonaccorso at 2018-07-14T11:12:52+02:00 Merge fixes included in Stretch 9.5 point release - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt

[Git][security-tracker-team/security-tracker][master] Remove src:undertow entries for stretch (will be removed in 9.5)

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fa8db11d by Salvatore Bonaccorso at 2018-07-14T10:40:34+02:00 Remove src:undertow entries for stretch (will be removed in 9.5) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Track fixes for 4.9.110-1

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 059d4a08 by Salvatore Bonaccorso at 2018-07-14T10:33:27+02:00 Track fixes for 4.9.110-1 - - - - - 2 changed files: - data/CVE/list - data/next-point-update.txt Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Track 4.9.107-1 fixes

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7265d8c0 by Salvatore Bonaccorso at 2018-07-14T10:21:15+02:00 Track 4.9.107-1 fixes - - - - - 47c4f562 by Salvatore Bonaccorso at 2018-07-14T10:21:22+02:00 Add note for wayland CVE - - - - -

[Git][security-tracker-team/security-tracker][master] automatic update

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7532679e by security tracker role at 2018-07-14T08:10:15+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark CVE-2018-12540 as NFU

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9d067d42 by Salvatore Bonaccorso at 2018-07-14T09:28:38+02:00 Mark CVE-2018-12540 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reshuffle list to separate from likely candidates and uploads which did not…

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c4318e5b by Salvatore Bonaccorso at 2018-07-14T09:08:10+02:00 Reshuffle list to separate from likely candidates and uploads which did not happend or were not in time for 9.5 While at it

[Git][security-tracker-team/security-tracker][master] Regroup some entries by source package

2018-07-14 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d68d7beb by Salvatore Bonaccorso at 2018-07-14T08:25:43+02:00 Regroup some entries by source package - - - - - 1 changed file: - data/CVE/list Changes: