[Git][security-tracker-team/security-tracker][master] Update notes for ibus

2019-12-08 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bde5a62 by Brian May at 2019-12-09T06:44:30Z Update notes for ibus - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] thrift moved to unstable with 0.13.0-2 upload

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 84bef3ea by Salvatore Bonaccorso at 2019-12-09T06:25:38Z thrift moved to unstable with 0.13.0-2 upload - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] update note

2019-12-08 Thread Thorsten Alteholz
= @@ -68,7 +68,7 @@ linux (Ben Hutchings) linux-4.9 (Ben Hutchings) -- opendmarc (Thorsten Alteholz) - NOTE: 20191124: still testing package, original patch does not seem to be enough + NOTE: 20191208: still testing package, original patch does not seem

[Git][security-tracker-team/security-tracker][master] Add upstream commit to adress CVE-2019-19630/htmldoc

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a53904e3 by Salvatore Bonaccorso at 2019-12-08T19:32:55Z Add upstream commit to adress CVE-2019-19630/htmldoc - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] dla: still ongoing

2019-12-08 Thread Adrian Bunk
= @@ -61,7 +61,7 @@ libmatio (Adrian Bunk) NOTE: 20190428: is likely vulnerable NOTE: 20190428: some CVE testcases still fail after applying the fix, NOTE: 20190428: older changes seem to also be required for them - NOTE: 20191124: work is ongoing + NOTE: 20191208

[Git][security-tracker-team/security-tracker][master] update note otrs2

2019-12-08 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 71896759 by Abhijith PA at 2019-12-08T16:25:12Z update note otrs2 - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2019-19269 and CVE-2019-19270 via unstable

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f2c9162 by Salvatore Bonaccorso at 2019-12-08T15:15:04Z Track fixed version for CVE-2019-19269 and CVE-2019-19270 via unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Update information on CVE-2019-12094 and CVE-2019-12095

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 479a4520 by Salvatore Bonaccorso at 2019-12-08T13:33:02Z Update information on CVE-2019-12094 and CVE-2019-12095 In the upstream ticket[1] some issues were mentioned which need to be combined

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Sponsored phpmyadmin 4:4.2.12-2+deb8u7 to security-master.

2019-12-08 Thread Chris Lamb
of CVE assignments. (roberto) -- -phpmyadmin (Utkarsh Gupta) - NOTE: 20191208: Vulnerable code appears to be in libraries/display_git_revision.lib.php. (lamby) - NOTE: 20191208: I've sent a RFS to the list. (utkarsh2102) --- python-oslo.utils (Abhijith PA) NOTE: Affected code seems

[Git][security-tracker-team/security-tracker][master] Mark phpmyadmin as still pending release.

2019-12-08 Thread Chris Lamb
) -- -phpmyadmin +phpmyadmin (Utkarsh Gupta) NOTE: 20191208: Vulnerable code appears to be in libraries/display_git_revision.lib.php. (lamby) + NOTE: 20191208: I've sent a RFS to the list. (utkarsh2102) -- python-oslo.utils (Abhijith PA) NOTE: Affected code seems to be in oslo/utils/strutils.py

[Git][security-tracker-team/security-tracker][master] 3 commits: Triage CVE-2019-19624 in opencv for jessie LTS.

2019-12-08 Thread Chris Lamb
= @@ -84,6 +84,9 @@ php-horde-trean (Roberto C. Sánchez) NOTE: 20191126: Corresponding with security team regarding CVE assignments. (roberto) NOTE: 20191203: Pinged upstream and MITRE regarding correctness of CVE assignments. (roberto) -- +phpmyadmin + NOTE: 20191208: Vulnerable code appears

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim python-oslo.utils

2019-12-08 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: c79049aa by Abhijith PA at 2019-12-08T11:48:25Z data/dla-needed.txt: Claim python-oslo.utils - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] waiting for feedback from slurm maintianer

2019-12-08 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: 6b606361 by Abhijith PA at 2019-12-08T11:22:19Z waiting for feedback from slurm maintianer - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add new libsixel issues

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 219d6fba by Salvatore Bonaccorso at 2019-12-08T08:17:08Z Add new libsixel issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-19630/htmldoc

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b99e0c8e by Salvatore Bonaccorso at 2019-12-08T08:15:17Z Add CVE-2019-19630/htmldoc - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2019-12-08 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f5a785ed by security tracker role at 2019-12-08T08:10:25Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list