[Git][security-tracker-team/security-tracker][master] LTS/Claim ghostscript

2019-05-04 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: fb186277 by Roberto C. Sánchez at 2019-05-05T00:48:07Z LTS/Claim ghostscript - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] LTS/python3.4, python2.7 status updates

2019-05-04 Thread Roberto C . Sánchez
: = data/dla-needed.txt = @@ -107,11 +107,11 @@ python-urllib3 (Roberto C. Sánchez) NOTE: 20190504: Working now on backporting the fixes (roberto) -- python2.7 (Roberto C. Sánchez) - NOTE: 20190321: Patches integrated for CVE-2018-14647, CVE-2019-5010

[Git][security-tracker-team/security-tracker][master] LTS/python3.4, python2.7 status updates

2019-05-04 Thread Roberto C . Sánchez
-2019-9740 (roberto) + NOTE: 20190504: Upstream has patched CVE-2019-9947 and CVE-2019-9740 in master, backports are in development (roberto) -- python3.4 (Roberto C. Sánchez) NOTE: 20190321: Patches integrated for CVE-2018-14647 and CVE-2019-9636 - NOTE: 20190429: Waiting on upstream action

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Re-add dhcpcd5 for jessie; code is likely vulnerable.

2019-05-04 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: b81f13a5 by Chris Lamb at 2019-05-04T22:47:12Z data/dla-needed.txt: Re-add dhcpcd5 for jessie; code is likely vulnerable. This reverts commits 4f0556e33b6b351468a82b88194e47ffe05bf0bc and

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim dhcpcd5.

2019-05-04 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 531b40e4 by Chris Lamb at 2019-05-04T22:48:26Z data/dla-needed.txt: Claim dhcpcd5. - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] 2 commits: Add commit references for CVE-2019-11236/python-urllib3

2019-05-04 Thread Roberto C . Sánchez
d.txt = @@ -101,7 +101,8 @@ poppler NOTE: 20190408: No known upstream patches available for remaining open CVEs (sunweaver) -- python-urllib3 (Roberto C. Sánchez) - NOTE: 20190429: Waiting on upstream action for CVE-2019-9740 (roberto) + NOTE: 20190504: Ups

[Git][security-tracker-team/security-tracker][master] automatic update

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b92017b2 by security tracker role at 2019-05-04T20:10:19Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2016-1585,appamor: Requested more information from upstream.

2019-05-04 Thread Markus Koschany
: https://bugs.launchpad.net/apparmor/+bug/1597017 + NOTE: 20190504: Requested more information from upstream. (apo) TODO: check CVE-2016-1584 (In all versions of Unity8 a running but not active application on a la ...) TODO: check View it on GitLab: https

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for two jetty9 issues (CVE-2019-1024{1,7})

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b24eb04 by Salvatore Bonaccorso at 2019-05-04T19:01:35Z Add Debian bug reference for two jetty9 issues (CVE-2019-1024{1,7}) - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Mark CVE-2019-10247/jetty9 as no-dsa for stretch

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 83a7e8dd by Salvatore Bonaccorso at 2019-05-04T15:27:26Z Mark CVE-2019-10247/jetty9 as no-dsa for stretch - - - - - f7cf4670 by Salvatore Bonaccorso at 2019-05-04T15:27:46Z Mark

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2019-10246/jetty

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1c30652b by Salvatore Bonaccorso at 2019-05-04T15:10:52Z Update information on CVE-2019-10246/jetty - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] if it only affects the Windows version, it might be ...

2019-05-04 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 0bf20638 by Thorsten Alteholz at 2019-05-04T14:48:13Z if it only affects the Windows version, it might be not-affected (unimportant breaks the ELTS tracker) - - - - - 1 changed file: -

Processing 828f51e366f55c5acb9604821d6d95b98566b2f5 failed

2019-05-04 Thread security tracker role
The error message was: data/CVE/list:3638: invalid special version '[jessie] - jetty8 (only affects Jetty on Windows)' in package entry Makefile:33: recipe for target 'all' failed make: *** [all] Error 1 ___ debian-security-tracker-commits mailing

Processing 828f51e366f55c5acb9604821d6d95b98566b2f5 failed

2019-05-04 Thread security tracker role
The error message was: data/CVE/list:3638: invalid special version '[jessie] - jetty8 (only affects Jetty on Windows)' in package entry Makefile:33: recipe for target 'all' failed make: *** [all] Error 1 ___ debian-security-tracker-commits mailing

[Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2019-10246,jetty,jetty8: Mark as unimportant for Jessie

2019-05-04 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: ff7f756f by Markus Koschany at 2019-05-04T13:01:57Z CVE-2019-10246,jetty,jetty8: Mark as unimportant for Jessie Only affects Jessie on Windows - - - - - 4569da48 by Markus Koschany at

[Git][security-tracker-team/security-tracker][master] CVE-2019-11037,php-imagick: Jessie is not affected

2019-05-04 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 8091b2f2 by Markus Koschany at 2019-05-04T12:05:04Z CVE-2019-11037,php-imagick: Jessie is not affected The vulnerable code is not present. - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add ghostscript to dla-needed.txt

2019-05-04 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b07bd51 by Markus Koschany at 2019-05-04T10:59:41Z Add ghostscript to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] CVE-2019-9826,phpbb3: Link to fixing commit

2019-05-04 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b9d36f2 by Markus Koschany at 2019-05-04T10:49:45Z CVE-2019-9826,phpbb3: Link to fixing commit - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1775-1 for phpbb3

2019-05-04 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 2a4c4416 by Markus Koschany at 2019-05-04T10:48:56Z Reserve DLA-1775-1 for phpbb3 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-10241/jetty

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d6c4b4c3 by Salvatore Bonaccorso at 2019-05-04T09:01:36Z Add CVE-2019-10241/jetty - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-10246/jetty

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 927c3f70 by Salvatore Bonaccorso at 2019-05-04T08:59:31Z Add CVE-2019-10246/jetty - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-10247/jetty

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 19329806 by Salvatore Bonaccorso at 2019-05-04T08:57:53Z Add CVE-2019-10247/jetty - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-11036/php7.3

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6633be5c by Salvatore Bonaccorso at 2019-05-04T08:49:52Z Add Debian bug reference for CVE-2019-11036/php7.3 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-11037/php-imagick

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d4a2193a by Salvatore Bonaccorso at 2019-05-04T08:48:38Z Add Debian bug reference for CVE-2019-11037/php-imagick - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-11036/php*

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 20981593 by Salvatore Bonaccorso at 2019-05-04T08:42:10Z Add CVE-2019-11036/php* - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-11037/php-imagick

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4c0c773d by Salvatore Bonaccorso at 2019-05-04T08:31:58Z Add CVE-2019-11037/php-imagick - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6b4a9652 by Salvatore Bonaccorso at 2019-05-04T08:25:15Z Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 71a8133d by security tracker role at 2019-05-04T08:10:18Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reference commits for CVE-2018-5743/bind9

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9923486e by Salvatore Bonaccorso at 2019-05-04T07:08:33Z Reference commits for CVE-2018-5743/bind9 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process several NFUs

2019-05-04 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a6f26a83 by Salvatore Bonaccorso at 2019-05-04T06:40:00Z Process several NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list