[Git][security-tracker-team/security-tracker][master] Reserve DLA-1424-1 for linux-latest-4.9

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: 156fa2ee by Ben Hutchings at 2018-07-14T06:26:27+01:00 Reserve DLA-1424-1 for linux-latest-4.9 - - - - - 1 changed file: - data/DLA/list Changes: =

[Git][security-tracker-team/security-tracker][master] Remove one issue from DLA-1422-1

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: 1eeb7188 by Ben Hutchings at 2018-07-14T02:12:30+01:00 Remove one issue from DLA-1422-1 The associated changelog mentions CVE-2017-5754, but only to note that the mitigation will be disabled by default

[Git][security-tracker-team/security-tracker][master] Fix CVE list for DLA-1423-1

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: c7c61fde by Ben Hutchings at 2018-07-14T03:59:58+01:00 Fix CVE list for DLA-1423-1 Several CVE IDs were mentioned in the linux changelog for version 4.9.107-1 despite having already been fixed in

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1423-1 for linux-4.9

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: c4f6e67a by Ben Hutchings at 2018-07-14T01:14:08+01:00 Reserve DLA-1423-1 for linux-4.9 But dont remove it from dla-needed.txt since there are still outstanding issues. - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] mp4v2 double free

2018-07-13 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c785c34 by Henri Salo at 2018-07-13T14:54:39+03:00 mp4v2 double free - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-14036/accountsservice assigned

2018-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 9852a094 by Emilio Pozuelo Monfort at 2018-07-13T14:19:54+02:00 CVE-2018-14036/accountsservice assigned - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] wolfssl fixed

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 8391776e by Moritz Muehlenhoff at 2018-07-13T14:01:58+02:00 wolfssl fixed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2016-1626 was resolved by the same patch as CVE-2016-1628 but forgotten in this DSA

2018-07-13 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 20ee3563 by Thorsten Alteholz at 2018-07-13T15:18:35+02:00 CVE-2016-1626 was resolved by the same patch as CVE-2016-1628 but forgotten in this DSA - - - - - 1 changed file: - data/DSA/list

[Git][security-tracker-team/security-tracker][master] dokuwiki fixed

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 56a9db23 by Moritz Muehlenhoff at 2018-07-13T15:20:47+02:00 dokuwiki fixed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2016-5158 was resolved by the same patch as CVE-2016-5159 but forgotten in this DSA

2018-07-13 Thread Thorsten Alteholz
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker Commits: 9c4d5443 by Thorsten Alteholz at 2018-07-13T15:30:34+02:00 CVE-2016-5158 was resolved by the same patch as CVE-2016-5159 but forgotten in this DSA - - - - - 1 changed file: - data/DSA/list

[Git][security-tracker-team/security-tracker][master] accountsservice: add upstream bug and fix

2018-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 633ca2d6 by Emilio Pozuelo Monfort at 2018-07-13T11:19:32+02:00 accountsservice: add upstream bug and fix - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b6290cc6 by security tracker role at 2018-07-13T08:10:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-13405: fix url

2018-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: de53940b by Emilio Pozuelo Monfort at 2018-07-13T10:44:49+02:00 CVE-2018-13405: fix url - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1420-1 for cinnamon

2018-07-13 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: f65f8972 by Chris Lamb at 2018-07-13T09:47:01+01:00 Reserve DLA-1420-1 for cinnamon - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] dla: take cups

2018-07-13 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 750d493b by Emilio Pozuelo Monfort at 2018-07-13T11:28:13+02:00 dla: take cups - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add oss-security reference

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: fc87982e by Moritz Muehlenhoff at 2018-07-13T16:10:35+02:00 Add oss-security reference - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: af8607f1 by Moritz Muehlenhoff at 2018-07-13T17:14:12+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new radare2 issues

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d979b7c by Moritz Muehlenhoff at 2018-07-13T17:16:26+02:00 new radare2 issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new catimg issue

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: bd77d007 by Moritz Muehlenhoff at 2018-07-13T17:19:38+02:00 new catimg issue - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new nagios4 issues

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 225afaa3 by Moritz Muehlenhoff at 2018-07-13T17:21:39+02:00 new nagios4 issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFUs

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 14f7331b by Moritz Muehlenhoff at 2018-07-13T17:26:44+02:00 NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] catimg bug

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: ab33b0ee by Moritz Muehlenhoff at 2018-07-13T17:28:03+02:00 catimg bug - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Reserve DLA-1421-1 for ruby2.1

2018-07-13 Thread Santiago R.R.
Santiago R.R. pushed to branch master at Debian Security Tracker / security-tracker Commits: a2197a17 by Santiago R.R at 2018-07-13T17:50:23+02:00 Reserve DLA-1421-1 for ruby2.1 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Remove no-dsa/postponed tagged entries for ruby2.1 which got update in DLA-1421-1

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0815b33b by Salvatore Bonaccorso at 2018-07-13T20:55:36+02:00 Remove no-dsa/postponed tagged entries for ruby2.1 which got update in DLA-1421-1 - - - - - 1 changed file: - data/CVE/list

[Git][security-tracker-team/security-tracker][master] remove one CVE, still unfixed

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 0b041892 by Moritz Muehlenhoff at 2018-07-13T21:26:23+02:00 remove one CVE, still unfixed - - - - - 1 changed file: - data/DSA/list Changes: =

[Git][security-tracker-team/security-tracker][master] thunderbird DSA

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5a3eacd8 by Moritz Muehlenhoff at 2018-07-13T21:17:15+02:00 thunderbird DSA - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Add note for CVE-2018-5739/isc-kea

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 702b3437 by Salvatore Bonaccorso at 2018-07-13T21:58:36+02:00 Add note for CVE-2018-5739/isc-kea - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14015/radare2

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 393e97e7 by Salvatore Bonaccorso at 2018-07-13T21:13:17+02:00 Add bug reference for CVE-2018-14015/radare2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14017/radare2

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8b4d5374 by Salvatore Bonaccorso at 2018-07-13T21:12:22+02:00 Add bug reference for CVE-2018-14017/radare2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14016/radare2

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2d0b6cce by Salvatore Bonaccorso at 2018-07-13T21:11:28+02:00 Add bug reference for CVE-2018-14016/radare2 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] ruby-grape, bouncycastle no-dsa

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e3bb788e by Moritz Muehlenhoff at 2018-07-13T21:23:14+02:00 ruby-grape, bouncycastle no-dsa - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add note references for CVE-2018-1403{1..5}

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8109252e by Salvatore Bonaccorso at 2018-07-13T21:02:08+02:00 Add note references for CVE-2018-1403{1..5} - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Remove CVE-2018-418{2,3} for list of fixed CVEs in DSA-4243-1

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2bc4e3dd by Salvatore Bonaccorso at 2018-07-13T21:19:22+02:00 Remove CVE-2018-418{2,3} for list of fixed CVEs in DSA-4243-1 The two issues are specifc cups-exec issues under MacOS X. Thus

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14054/mp4v2

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 67cfff21 by Salvatore Bonaccorso at 2018-07-13T21:45:57+02:00 Add CVE-2018-14054/mp4v2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process some NFUs

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a4e77cd7 by Salvatore Bonaccorso at 2018-07-13T22:05:00+02:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process NFUs

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eb8532d7 by Salvatore Bonaccorso at 2018-07-13T22:17:31+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] new soundtouch issues

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: eee0ee4c by Moritz Muehlenhoff at 2018-07-13T23:11:38+02:00 new soundtouch issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark Linux kernel issues as unfixed/ignored in linux-4.9

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: 0cf66397 by Ben Hutchings at 2018-07-14T01:04:24+01:00 Mark Linux kernel issues as unfixed/ignored in linux-4.9 - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a7fdcca8 by security tracker role at 2018-07-13T20:10:24+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1116/policykit-1 as no-dsa

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ba246dda by Salvatore Bonaccorso at 2018-07-13T22:12:38+02:00 Mark CVE-2018-1116/policykit-1 as no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000211/ruby-doorkeeper

2018-07-13 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cada0ffb by Salvatore Bonaccorso at 2018-07-13T22:17:54+02:00 Add CVE-2018-1000211/ruby-doorkeeper - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] new bootstrap issues, specific affected versions need to be verified

2018-07-13 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: eddf71d8 by Moritz Muehlenhoff at 2018-07-13T23:09:19+02:00 new bootstrap issues, specific affected versions need to be verified - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: Reserve DLA-1422-1 for linux

2018-07-13 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: dccdbe9a by Ben Hutchings at 2018-07-14T00:54:57+01:00 Reserve DLA-1422-1 for linux But dont remove it from dla-needed.txt since there are still outstanding issues. - - - - - 2947e110 by Ben Hutchings