[Pkg-kde-extras] Bug#888865: exiv2: CVE-2017-14865

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/134 Hi, the following vulnerability was published for exiv2, only affecting the experimental version. CVE-2017-14865[0]: | There is a heap-based buffer overflow in the

[Pkg-kde-extras] Bug#888864: exiv2: CVE-2017-1000126

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/175 Hi, the following vulnerability was published for exiv2, only affecting experimental version. CVE-2017-1000126[0]: | exiv2 0.26 contains a Stack out of bounds read in webp

[Pkg-kde-extras] Bug#888862: exiv2: CVE-2018-5772

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Hi, the following vulnerability was published for exiv2, and is only affecting experimental version. Marking grave to indicate should not go into unstable (the issue itself does not really warrant grave severity, so if you

[Pkg-kde-extras] Bug#888872: exiv2: CVE-2017-12956

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/59 Hi, the following vulnerability was published for exiv2, only affecting experimental. CVE-2017-12956[0]: | There is an illegal address access in

[Pkg-kde-extras] Bug#888874: exiv2: CVE-2017-11553

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/54 Hi, the following vulnerability was published for exiv2, only experimental is affected. CVE-2017-11553[0]: | There is an illegal address access in the extend_alias_table

[Pkg-kde-extras] Bug#888867: exiv2: CVE-2017-14860

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/71 Hi, the following vulnerability was published for exiv2, only affecting the experimental version. CVE-2017-14860[0]: | There is a heap-based buffer over-read in the |

[Pkg-kde-extras] Bug#888866: exiv2: CVE-2017-14863

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/132 Hi, the following vulnerability was published for exiv2, only affecting the experimental version. CVE-2017-14863[0]: | A NULL pointer dereference was discovered in |

[Pkg-kde-extras] Bug#888873: exiv2: CVE-2017-12955

2018-01-30 Thread Salvatore Bonaccorso
Source: exiv2 Version: 0.26-1 Severity: grave Tags: security upstream Forwarded: https://github.com/Exiv2/exiv2/issues/58 Hi, the following vulnerability was published for exiv2, only affecting experimental version. CVE-2017-12955[0]: | There is a heap-based buffer overflow in basicio.cpp of

Re: [Pkg-kde-extras] Action requested: migration of alioth list pkg-kde-extras

2018-01-30 Thread Dominic Hargreaves
Dear list, Mark Purcell no longer wishes to act as owner of this list. Please let me know (CCing the list) if you would like to step up in this role (only necessary if you want the list to migrate, as below). Best, Dominic. > On Mon., 29 Jan. 2018, 06:03 alioth lists migration team, < >

[Pkg-kde-extras] kpmcore 3.3.0-2 MIGRATED to testing

2018-01-30 Thread Debian testing watch
FYI: The status of the kpmcore source package in Debian's testing distribution has changed. Previous version: 3.2.1-3 Current version: 3.3.0-2 -- This email is automatically generated once a day. As the installation of new packages into testing happens multiple times a day you will