[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Claim awstats

2018-01-07 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: 75b6a50e by Brian May at 2018-01-08T17:55:27+11:00 Claim awstats - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add qtpass as proposed via stretch-pu for CVE-2017-18021

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d0de739f by Salvatore Bonaccorso at 2018-01-08T07:11:19+01:00 Add qtpass as proposed via stretch-pu for CVE-2017-18021 - - - - - 1 changed file: - data/next-point-update.txt Changes: ==

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] LTS: remove imagemagick from dla-needed.txt, it has no issues outstanding

2018-01-07 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: f91d5b76 by Roberto C. Sánchez at 2018-01-07T23:29:24-05:00 LTS: remove imagemagick from dla-needed.txt, it has no issues outstanding - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] LTS: annotate CVE-2018-5248/imagemagick as not affecting wheezy

2018-01-07 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: f9ccd47e by Roberto C. Sánchez at 2018-01-07T23:27:19-05:00 LTS: annotate CVE-2018-5248/imagemagick as not affecting wheezy - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: Claim plexus-utils and plexus-utils2 in dla-needed.txt

2018-01-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: cfd6b349 by Markus Koschany at 2018-01-08T00:28:26+01:00 Claim plexus-utils and plexus-utils2 in dla-needed.txt - - - - - ac9659d9 by Markus Koschany at 2018-01-08T00:29:23+01:00 Merge branch 'master'

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1232-1 for linux

2018-01-07 Thread Ben Hutchings
Ben Hutchings pushed to branch master at Debian Security Tracker / security-tracker Commits: 88d23e92 by Ben Hutchings at 2018-01-07T22:33:12+00:00 Reserve DLA-1232-1 for linux - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2017-17783, graphicsmagick: Wheezy is not affected

2018-01-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 761f24d8 by Markus Koschany at 2018-01-07T23:21:32+01:00 CVE-2017-17783,graphicsmagick: Wheezy is not affected Issue is not reproducible with ASAN. The function GetPalmPaletteGivenBits is not present

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add mapproxy as proposed via stretch-pu

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 06f7a42f by Salvatore Bonaccorso at 2018-01-07T22:27:38+01:00 Add mapproxy as proposed via stretch-pu - - - - - 1 changed file: - data/next-point-update.txt Changes: ===

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-5248

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3450fea9 by Salvatore Bonaccorso at 2018-01-07T22:16:48+01:00 Add bug reference for CVE-2018-5248 - - - - - 1 changed file: - data/CVE/list Changes: = da

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2014-10069 as NFU

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5c982d49 by Salvatore Bonaccorso at 2018-01-07T22:15:54+01:00 Mark CVE-2014-10069 as NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/li

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: mapproxy no-dsa

2018-01-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3e14808d by Moritz Muehlenhoff at 2018-01-07T22:09:47+01:00 mapproxy no-dsa - - - - - bd6418fe by Moritz Muehlenhoff at 2018-01-07T22:10:43+01:00 Merge branch 'master' of salsa.debian.org:security

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bb6848e0 by security tracker role at 2018-01-07T21:10:12+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ==

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2017-17914

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9e0b15c3 by Salvatore Bonaccorso at 2018-01-07T21:55:21+01:00 Add bug reference for CVE-2017-17914 - - - - - 1 changed file: - data/CVE/list Changes: = d

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] take PHP

2018-01-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: e0852968 by Moritz Muehlenhoff at 2018-01-07T21:52:44+01:00 take PHP - - - - - 1 changed file: - data/dsa-needed.txt Changes: = data/dsa-needed.txt ===

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: poppler DSA

2018-01-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 104fc240 by Moritz Muehlenhoff at 2018-01-07T21:47:53+01:00 poppler DSA - - - - - 9d045d7a by Moritz Muehlenhoff at 2018-01-07T21:49:18+01:00 Merge branch 'master' of salsa.debian.org:security-tra

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-4868 as unimportant

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c9bcc9d0 by Salvatore Bonaccorso at 2018-01-07T21:43:34+01:00 Mark CVE-2018-4868 as unimportant Specially crafted images processed can cause ouf of memory and exiv2 crash and having negligible im

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update entry for CVE-2017-11552

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 438ef6fd by Salvatore Bonaccorso at 2018-01-07T20:15:05+01:00 Update entry for CVE-2017-11552 Further analysis has shown that the isuse has its roots in mpg321 itself rather than libmad. Mark CVE

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2017-0880/skia, itp'ed: #818180

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4f268357 by Salvatore Bonaccorso at 2018-01-07T17:11:54+01:00 Add CVE-2017-0880/skia, itp'ed: #818180 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2017-10910/node-mqtt, itp'ed, #816028

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5c99f514 by Salvatore Bonaccorso at 2018-01-07T17:11:08+01:00 Add CVE-2017-10910/node-mqtt, itp'ed, #816028 - - - - - 1 changed file: - data/CVE/list Changes: ==

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b055019c by Salvatore Bonaccorso at 2018-01-07T17:09:47+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list ===

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Claim imagemagick in dla-needed.txt

2018-01-07 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: e82c4353 by Roberto C. Sánchez at 2018-01-07T08:11:58-05:00 Claim imagemagick in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-1000427/node-marked

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d3721e9f by Salvatore Bonaccorso at 2018-01-07T13:41:31+01:00 Add fixed version for CVE-2017-1000427/node-marked - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add fixing version for CVE-2017-11551/libid3tag

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 161e427e by Salvatore Bonaccorso at 2018-01-07T13:37:03+01:00 Add fixing version for CVE-2017-11551/libid3tag Cf: https://bugs.debian.org/870333#10 Thanks: Kurt Roeckx - - - - - 1 changed fil

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark wildmidi as no-dsa

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 405d8f5c by Salvatore Bonaccorso at 2018-01-07T13:33:21+01:00 Mark wildmidi as no-dsa - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add fixing version for wildmidi with unstable upload

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8d259f4e by Salvatore Bonaccorso at 2018-01-07T13:28:07+01:00 Add fixing version for wildmidi with unstable upload - - - - - 1 changed file: - data/CVE/list Changes: ===

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reference bug tracking qemu status

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 32dbb67e by Salvatore Bonaccorso at 2018-01-07T13:25:24+01:00 Reference bug tracking qemu status - - - - - 1 changed file: - data/CVE/list Changes: = dat

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add note on CVE-2017-5715 for qemu

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 13653c17 by Salvatore Bonaccorso at 2018-01-07T13:22:23+01:00 Add note on CVE-2017-5715 for qemu Add a note on Qemu update. To protect from CVE-2017-5715 one would need to have an 1/ intel / amd

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-01-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 3bf57810 by security tracker role at 2018-01-07T09:10:12+00:00 automatic update - - - - - 0 changed files: Changes: View it on GitLab: https://salsa.debian.org/security-tracker-team/secur

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: Triage imagemagick for LTS

2018-01-07 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 5f7be287 by Chris Lamb at 2018-01-07T08:27:51+00:00 Triage imagemagick for LTS - - - - - f6669d6b by Chris Lamb at 2018-01-07T08:28:41+00:00 Triage plexus-utils for LTS - - - - - e0b49c9e by Chris Lamb at

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: Triage wildmidi for LTS

2018-01-07 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: f3b2d44e by Chris Lamb at 2018-01-07T08:23:51+00:00 Triage wildmidi for LTS - - - - - d8d200d1 by Chris Lamb at 2018-01-07T08:23:56+00:00 Claim wildmidi in data/dla-needed.txt - - - - - 1 changed file:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: Triage smarty3 for LTS

2018-01-07 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 7a38dc46 by Chris Lamb at 2018-01-07T08:22:11+00:00 Triage smarty3 for LTS - - - - - 3122b7e2 by Chris Lamb at 2018-01-07T08:22:28+00:00 Claim smarty3 in data/dla-needed.txt - - - - - 1 changed file: -