[Git][security-tracker-team/security-tracker][master] Claim tomcat8 in jessie

2020-03-09 Thread Abhijith PA
= @@ -71,10 +71,11 @@ slirp (Chris Lamb) squid3 (Markus Koschany) NOTE: 20200309: Requires more tests. (apo) -- -tomcat8 +tomcat8 (Abhijith PA) NOTE: 20200106: Almost done. Working on failing testcase. NOTE: 20200210: TestFormAuthenticator failing with CVE

[Git][security-tracker-team/security-tracker][master] CVE-2019-3689/nfs-utils: upstream commit

2020-03-09 Thread Sylvain Beucler
Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker Commits: 41f2538a by Sylvain Beucler at 2020-03-09T23:50:15+01:00 CVE-2019-3689/nfs-utils: upstream commit - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] NFUs

2020-03-09 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 58a493d7 by Moritz Muehlenhoff at 2020-03-09T23:36:04+01:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug tracking numbers for CVE-2020-10188

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6e16d812 by Salvatore Bonaccorso at 2020-03-09T22:19:45+01:00 Add Debian bug tracking numbers for CVE-2020-10188 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-{9282,9386}/mahara

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7f6dd683 by Salvatore Bonaccorso at 2020-03-09T21:40:24+01:00 Add CVE-2020-{9282,9386}/mahara - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b63cc0ba by Salvatore Bonaccorso at 2020-03-09T21:38:52+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 673332fa by Salvatore Bonaccorso at 2020-03-09T21:31:57+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: take qemu

2020-03-09 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: d97c62a9 by Emilio Pozuelo Monfort at 2020-03-09T21:24:04+01:00 dla: take qemu - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b5017ef by Salvatore Bonaccorso at 2020-03-09T21:20:06+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e0234400 by security tracker role at 2020-03-09T20:10:20+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add and claim sleuthkit

2020-03-09 Thread Utkarsh Gupta
Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker Commits: 91acb03a by Utkarsh Gupta at 2020-03-10T01:14:27+05:30 Add and claim sleuthkit - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Git][security-tracker-team/security-tracker][master] Reserve DSA number for network-manager-ssh update

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c33c5e43 by Salvatore Bonaccorso at 2020-03-09T20:42:31+01:00 Reserve DSA number for network-manager-ssh update - - - - - 1 changed file: - data/DSA/list Changes:

[Git][security-tracker-team/security-tracker][master] Record fixed version for libvpx

2020-03-09 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e72430cd by Moritz Muehlenhoff at 2020-03-09T19:46:37+01:00 Record fixed version for libvpx - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2136-1 for libvpx

2020-03-09 Thread Chris Lamb
} [jessie] - jackson-databind 2.4.2-2+deb8u12 = data/dla-needed.txt = @@ -34,8 +34,6 @@ libmatio (Adrian Bunk) libmtp (Dylan Aïssi) NOTE: 20200309: WIP. -- -libvpx (Chris Lamb) --- linux (Ben Hutchings) -- linux-4.9

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim slirp.

2020-03-09 Thread Chris Lamb
Koschany) NOTE: 20200309: Requires more tests. (apo) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2254091e58cb731c479ce8cd065f107da97abe30 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit

[Git][security-tracker-team/security-tracker][master] CVE-2020-7061 only affects code with PHP_WIN32 defined

2020-03-09 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 6e2f910c by Thorsten Alteholz at 2020-03-09T15:44:50+01:00 CVE-2020-7061 only affects code with PHP_WIN32 defined - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e58939b2 by Salvatore Bonaccorso at 2020-03-09T13:00:26+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] two sleuthkit issues

2020-03-09 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8ce4b628 by Moritz Muehlenhoff at 2020-03-09T12:13:42+01:00 two sleuthkit issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2020-03-09 Thread Holger Levsen
NOTE: 20200223: WIP. -- squid3 (Markus Koschany) NOTE: 20200309: Requires more tests. (apo) -- -tomcat8 (Abhijith PA) +tomcat8 NOTE: 20200106: Almost done. Working on failing testcase. NOTE: 20200210: TestFormAuthenticator failing with CVE-2019-17563. backporting upstream tests

[Git][security-tracker-team/security-tracker][master] 2 commits: Update status of squid3 in dla-needed.txt.

2020-03-09 Thread Markus Koschany
but it is hard to tell without more - NOTE: 20200120: details on the intention. (Ola) - NOTE: 20200224: Ongoing work. (apo) + NOTE: 20200309: Requires more tests. (apo) -- tomcat8 (Abhijith PA) NOTE: 20200106: Almost done. Working on failing testcase. @@ -92,7 +80,7 @@ tomcat8 (Abhijith PA) weechat

[Git][security-tracker-team/security-tracker][master] NFUs

2020-03-09 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 76bfb7f0 by Moritz Muehlenhoff at 2020-03-09T09:42:29+01:00 NFUs imagemagick triage - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] update notes

2020-03-09 Thread Thorsten Alteholz
= @@ -45,6 +45,7 @@ lua-cgi NOTE: 20200227: may not be entirelly reliable. One possibility is to declare it unsupported. (Ola) -- nova (Thorsten Alteholz) + NOTE: 20200309: work is ongoing -- opendmarc (Thorsten Alteholz) NOTE: 20200302: still testing

[Git][security-tracker-team/security-tracker][master] automatic update

2020-03-09 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 060186c2 by security tracker role at 2020-03-09T08:10:15+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: still ongoing

2020-03-09 Thread Adrian Bunk
: 20200309: work is ongoing -- libmtp (Dylan Aïssi) NOTE: 20200309: WIP. View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/47e8382a0bb749d8f9c7399f141e98ec960e0a81 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker