[Git][security-tracker-team/security-tracker][master] Add CVE-2018-19364/qemu

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d8b59c5 by Salvatore Bonaccorso at 2018-11-20T07:40:27Z Add CVE-2018-19364/qemu - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Unclaim tiff for now

2018-11-19 Thread Brian May
= @@ -88,7 +88,11 @@ symfony (Thorsten Alteholz) systemd NOTE: 20181119: tmpfiles.d issues remain, fix invasive, consider backporting all of tmpfiles.c (anarcat) -- -tiff (Brian May) +tiff + NOTE: CVE-2018-19210: No upstream patch yet. + NOTE: CVE-2018-18661: Easy to patch

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-19359/gitlab

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 35d4a524 by Salvatore Bonaccorso at 2018-11-20T05:26:39Z Add CVE-2018-19359/gitlab - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Track fixes for elfutils in unstable upload

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4b4d708d by Salvatore Bonaccorso at 2018-11-20T05:23:10Z Track fixes for elfutils in unstable upload - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Four CVEs fixed in experimental for gitlab

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3371fb02 by Salvatore Bonaccorso at 2018-11-20T05:21:22Z Four CVEs fixed in experimental for gitlab - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-17479/chromium-browser

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8f899af8 by Salvatore Bonaccorso at 2018-11-20T05:17:43Z Add fixed version for CVE-2018-17479/chromium-browser - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-19358/gnome-keyring

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a3a1fcbf by Salvatore Bonaccorso at 2018-11-20T05:15:51Z Add bug reference for CVE-2018-19358/gnome-keyring - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-18661/tiff fixed version in unstable

2018-11-19 Thread László Böszörményi
László Böszörményi pushed to branch master at Debian Security Tracker / security-tracker Commits: 7a1e0abd by Laszlo Boszormenyi (GCS) at 2018-11-19T23:10:28Z Add CVE-2018-18661/tiff fixed version in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] new chromium issue

2018-11-19 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 398fbe2a by Moritz Muehlenhoff at 2018-11-19T22:28:08Z new chromium issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 3 commits: jasper: Remove no-dsa tags. These issues will be fixed in an upcoming DLA.

2018-11-19 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9507defe by Markus Koschany at 2018-11-19T22:02:56Z jasper: Remove no-dsa tags. These issues will be fixed in an upcoming DLA. - - - - - b074ccc4 by Markus Koschany at 2018-11-19T22:12:06Z jasper:

[Git][security-tracker-team/security-tracker][master] Mark CVE-2014-10077 as no-dsa for stretch

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 241e0730 by Salvatore Bonaccorso at 2018-11-19T22:06:32Z Mark CVE-2014-10077 as no-dsa for stretch - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Remove one postponed entry included in update

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4e2fb2c3 by Salvatore Bonaccorso at 2018-11-19T22:03:44Z Remove one postponed entry included in update - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1580-1 for systemd

2018-11-19 Thread Antoine Beaupré
-- -systemd (Antoine Beaupre) - NOTE: 20181101: I recommend to fix all open issues including the postponed - NOTE: ones, too. (apo) +systemd + NOTE: 20181119: tmpfiles.d issues remain, fix invasive, consider backporting all of tmpfiles.c (anarcat) -- tiff (Brian May) -- View it on GitLab

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for mariadb-10.1

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e2487a0 by Salvatore Bonaccorso at 2018-11-19T21:31:21Z Reserve DSA number for mariadb-10.1 - - - - - 1 changed file: - data/DSA/list Changes: =

[Git][security-tracker-team/security-tracker][master] unclaim enigmail

2018-11-19 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 13ca9b4b by Antoine Beaupré at 2018-11-19T20:52:26Z unclaim enigmail - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-19274/phpbb3

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4fbb5ac0 by Salvatore Bonaccorso at 2018-11-19T20:11:25Z Add CVE-2018-19274/phpbb3 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 92cdaf58 by security tracker role at 2018-11-19T20:10:21Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 08841616 by Salvatore Bonaccorso at 2018-11-19T20:09:09Z Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Adjust entry for DLA-1579-1/openjpeg2

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c5bf41f9 by Salvatore Bonaccorso at 2018-11-19T19:56:43Z Adjust entry for DLA-1579-1/openjpeg2 Suite, source package and version were missing from entry. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] update openjpeg2 dla-needed entry

2018-11-19 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 29200ec0 by Hugo Lefeuvre at 2018-11-19T19:02:19Z update openjpeg2 dla-needed entry - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] do not crash if --unclaim is not specified

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ab2977b1 by Antoine Beaupré at 2018-11-19T18:19:02Z do not crash if --unclaim is not specified - - - - - 1 changed file: - bin/review-update-needed Changes:

[Git][security-tracker-team/security-tracker][master] data/CVE: update openjpeg2 cve notes

2018-11-19 Thread Hugo Lefeuvre
Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker Commits: 37127a30 by Hugo Lefeuvre at 2018-11-19T16:52:40Z data/CVE: update openjpeg2 cve notes Reference my patches for CVE-2017-17480 and CVE-2018-18088. CVE-2018-5785 is actually not affecting Jessie,

[Git][security-tracker-team/security-tracker][master] Add ceph for regression update to dsa-needed list

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0b009256 by Salvatore Bonaccorso at 2018-11-19T15:51:25Z Add ceph for regression update to dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] change status of CVE-2018-0734 in Jessie

2018-11-19 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 6a2c032e by Thorsten Alteholz at 2018-11-19T14:56:23Z change status of CVE-2018-0734 in Jessie - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] libapache-mod-jk status update

2018-11-19 Thread Roberto C . Sánchez
and asked about upgrading the - NOTE: package to the latest upstream version because the changes are rather - NOTE: intrusive. (apo) + NOTE: 20181119: New upstream release integrated (per apo's suggestion & security team's concurrence). + NOTE: 20181119: Package testing to begin shortly. (rob

[Git][security-tracker-team/security-tracker][master] uriparser fixed

2018-11-19 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 01384370 by Moritz Muehlenhoff at 2018-11-19T09:27:21Z uriparser fixed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2018-11-19 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c69ce8ad by security tracker role at 2018-11-19T08:10:12Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list