[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] LTS: refer to other ruby packages in jruby

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: c71b98fb by Antoine Beaupré at 2018-04-11T18:20:26-04:00 LTS: refer to other ruby packages in jruby - - - - - 1 changed file: - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] clarify status of firebird2.5

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: d694f151 by Antoine Beaupré at 2018-04-11T17:30:44-04:00 clarify status of firebird2.5 - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] triage out libreoffice as both issues are marked unimportant

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: a83de84d by Antoine Beaupré at 2018-04-11T17:22:21-04:00 triage out libreoffice as both issues are marked unimportant - - - - - 1 changed file: - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] clarify status of krb5 for lts

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 8eac7aaa by Antoine Beaupré at 2018-04-11T16:48:05-04:00 clarify status of krb5 for lts - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: remove squirrelmail triaged as thijs reserved the DLA

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 8f2b56c5 by Antoine Beaupré at 2018-04-11T16:25:04-04:00 remove squirrelmail triaged as thijs reserved the DLA - - - - - 69d165fd by Antoine Beaupré at 2018-04-11T16:27:20-04:00 Revert triage

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: triage ipython as ignored in wheezy instead of just no-dsa

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: e0d312af by Antoine Beaupré at 2018-04-11T16:19:56-04:00 triage ipython as ignored in wheezy instead of just no-dsa we do not need to look back into that so use the more standard approach to fixing

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] triage out more minor issues away from lts

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: f8173581 by Antoine Beaupré at 2018-04-11T15:55:16-04:00 triage out more minor issues away from lts - - - - - 1 changed file: - data/CVE/list Changes: = data

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: triage nmap out of jessie and wheezy: vulnerable code introduced later

2018-04-11 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 958c1045 by Antoine Beaupré at 2018-04-11T09:42:48-04:00 triage nmap out of jessie and wheezy: vulnerable code introduced later - - - - - 127100fa by Antoine Beaupré at 2018-04-11T09:44:34-04:00

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1331-1 for mercurial

2018-03-30 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 022422f9 by Antoine Beaupré at 2018-03-30T11:16:41-04:00 Reserve DLA-1331-1 for mercurial - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1330-1 for openssl

2018-03-30 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 0e02030f by Antoine Beaupré at 2018-03-30T10:39:50-04:00 Reserve DLA-1330-1 for openssl - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] lts wheezy claim

2018-03-29 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 86c70056 by Antoine Beaupré at 2018-03-29T17:48:05-04:00 lts wheezy claim - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] filed bug about memcached

2018-03-29 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: c1291e1d by Antoine Beaupré at 2018-03-29T17:35:41-04:00 filed bug about memcached - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1329-1 for memcached

2018-03-29 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 530ee747 by Antoine Beaupré at 2018-03-29T17:26:56-04:00 Reserve DLA-1329-1 for memcached - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] memcached: upstream contacted and has reproducer, claiming

2018-03-29 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 09e0545b by Antoine Beaupré at 2018-03-29T16:51:09-04:00 memcached: upstream contacted and has reproducer, claiming - - - - - 1 changed file: - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] claim mercurial for DLA to cleanup my mess

2018-03-26 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 282c14cd by Antoine Beaupré at 2018-03-26T11:25:13-04:00 claim mercurial for DLA to cleanup my mess - - - - - 1 changed file: - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] memcached no-dsa in wheezy as well, listens only on localhost

2018-03-04 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 0621902b by Antoine Beaupré at 2018-03-04T14:18:57-05:00 memcached no-dsa in wheezy as well, listens only on localhost - - - - - 1 changed file: - data/CVE/list Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] dla-needed: isc-dhcp, freexl

2018-02-28 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 7f11b833 by Antoine Beaupré at 2018-02-28T16:50:17-05:00 dla-needed: isc-dhcp, freexl - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] dla-needed: zsh, no-dsa: roundcube

2018-02-28 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: e9c7407c by Antoine Beaupré at 2018-02-28T16:38:38-05:00 dla-needed: zsh, no-dsa: roundcube - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: add note about simplesamlphp

2018-02-27 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 883cc4ef by Antoine Beaupré at 2018-02-27T13:50:42-05:00 add note about simplesamlphp - - - - - 2f1ec33c by Antoine Beaupré at 2018-02-27T13:58:39-05:00 sign and timestamp my dla-ndeed entries

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: swap links2 bug back, new elinks bug

2018-02-26 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 5fa96963 by Antoine Beaupré at 2018-02-26T14:10:32-05:00 swap links2 bug back, new elinks bug - - - - - b7bb1215 by Antoine Beaupré at 2018-02-26T14:10:58-05:00 old php5 triage: it uses libgd, which

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] update status for CVE-2012-6709

2018-02-26 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 6b89bc85 by Antoine Beaupré at 2018-02-26T13:49:05-05:00 update status for CVE-2012-6709 links2 not vulnerable in wheezy and above, elinks still vulnerable, bug moved - - - - - 1 changed file

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add wordpress to dla-needed, add details in the issue

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 73ccae4c by Antoine Beaupré at 2018-02-16T16:33:14-05:00 add wordpress to dla-needed, add details in the issue this seems like a severe enough to warrant a patch, even though upstream isnt ready yet

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add bind9 to dla-needed, already in progress

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 9b060bc2 by Antoine Beaupré at 2018-02-16T16:04:27-05:00 add bind9 to dla-needed, already in progress - - - - - 1 changed file: - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: add polarssl, sox, wavpack to dla-needed.txt

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 66d36bd2 by Antoine Beaupré at 2018-02-16T15:59:51-05:00 add polarssl, sox, wavpack to dla-needed.txt - - - - - 43dcbb7c by Antoine Beaupré at 2018-02-16T15:59:52-05:00 fix jessie triage for myrepos

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: handle non-URL explanations in contact-maintainers

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: fa78d4b3 by Antoine Beaupré at 2018-02-16T15:32:06-05:00 handle non-URL explanations in contact-maintainers - - - - - c0678b9e by Antoine Beaupré at 2018-02-16T15:32:07-05:00 irssi dla-needed w

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 3 commits: mark golang's CVE-2018-6574 as dla-needed and add relation to CVE-2017-15041

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 7553fe97 by Antoine Beaupré at 2018-02-16T14:02:20-05:00 mark golangs CVE-2018-6574 as dla-needed and add relation to CVE-2017-15041 - - - - - 4755a0f6 by Antoine Beaupré at 2018-02-16T14:02:22-05:00

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add details on CVE-2018-7176

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 0a904f21 by Antoine Beaupré at 2018-02-16T11:25:55-05:00 add details on CVE-2018-7176 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] triage systemd and mr out of wheezy

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 359c3a7a by Antoine Beaupré at 2018-02-16T10:40:43-05:00 triage systemd and mr out of wheezy mr follows triage in jessie systemd/CVE-2018-6954 is triaged like CVE-2013-4392 although Im feel

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] not available for frontdesk first week of may

2018-02-16 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 93967387 by Antoine Beaupré at 2018-02-16T09:40:46-05:00 not available for frontdesk first week of may - - - - - 1 changed file: - org/lts-frontdesk.2018.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1268-1 for p7zip

2018-02-02 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: a5874daa by Antoine Beaupré at 2018-02-02T10:39:42-05:00 Reserve DLA-1268-1 for p7zip - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] note work done on p7zip patch backport

2018-01-27 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: d40abd9b by Antoine Beaupré at 2018-01-26T16:12:54-05:00 note work done on p7zip patch backport - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DLA-1257-1 for openssh

2018-01-27 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 48ece9cd by Antoine Beaupré at 2018-01-26T15:38:39-05:00 Reserve DLA-1257-1 for openssh - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] lts: claim openssh

2018-01-27 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 46dcf500 by Antoine Beaupré at 2018-01-26T14:27:40-05:00 lts: claim openssh - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] reclaim agx lts frontdesk weeks

2018-01-25 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: c4a42421 by Antoine Beaupré at 2018-01-25T09:46:30-05:00 reclaim agx lts frontdesk weeks - - - - - 1 changed file: - org/lts-frontdesk.2018.txt Changes

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] claim 3 LTS frontdesk weeks

2018-01-24 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: 14dd6cfd by Antoine Beaupré at 2018-01-24T12:02:33-05:00 claim 3 LTS frontdesk weeks - - - - - 1 changed file: - org/lts-frontdesk.2018.txt Changes: = org

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] update status information for jquery: recommend no-dsa

2018-01-19 Thread Antoine Beaupré
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker Commits: b0a2e7d3 by Antoine Beaupré at 2018-01-19T10:53:04-05:00 update status information for jquery: recommend no-dsa - - - - - 1 changed file: - data/CVE/list Changes

[Secure-testing-commits] r58151 - in data: . DLA

2017-11-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-30 18:33:24 + (Thu, 30 Nov 2017) New Revision: 58151 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1196-1 for optipng Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r58095 - data

2017-11-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-28 21:04:17 + (Tue, 28 Nov 2017) New Revision: 58095 Modified: data/dla-needed.txt Log: claim optipng Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-28 21:03:48 UTC (rev 58094)

[Secure-testing-commits] r58094 - data

2017-11-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-28 21:03:48 + (Tue, 28 Nov 2017) New Revision: 58094 Modified: data/dla-needed.txt Log: give up on libreoffice, it is driving me nuts Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r58086 - in data: . CVE

2017-11-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-28 19:47:38 + (Tue, 28 Nov 2017) New Revision: 58086 Modified: data/CVE/list data/dla-needed.txt Log: mark exiv2 issues as unreproducible Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r57968 - data

2017-11-23 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-23 19:53:24 + (Thu, 23 Nov 2017) New Revision: 57968 Modified: data/dla-needed.txt Log: propose resolution for exiv2 Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-23 19:51:53

[Secure-testing-commits] r57966 - data

2017-11-23 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-23 18:32:01 + (Thu, 23 Nov 2017) New Revision: 57966 Modified: data/dla-needed.txt Log: claim exiv2 Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-23 17:10:54 UTC (rev 57965)

[Secure-testing-commits] r57898 - data

2017-11-21 Thread Antoine Beaupré
Author: anarcat Date: 2017-11-21 15:35:11 + (Tue, 21 Nov 2017) New Revision: 57898 Modified: data/dla-needed.txt Log: claim libreoffice Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-11-21 15:27:43 UTC (rev

[Secure-testing-commits] r57170 - in data: . DLA

2017-10-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-31 17:14:39 + (Tue, 31 Oct 2017) New Revision: 57170 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1154-1 for graphicsmagick Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r57159 - in data: . DLA

2017-10-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-31 13:32:35 + (Tue, 31 Oct 2017) New Revision: 57159 Modified: data/DLA/list data/dla-needed.txt Log: reserve DLA-1150-1 for pending wpa KRACK upload Modified: data/DLA/list === ---

[Secure-testing-commits] r57136 - in data: . CVE

2017-10-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-30 18:46:07 + (Mon, 30 Oct 2017) New Revision: 57136 Modified: data/CVE/list data/dla-needed.txt Log: no version of puppet in debian is affected by CVE-2016-5714 agent 1.3.6 is puppet 4.3.2 and 1.7.1 is 4.7.0, so no version is vulnerable Modified:

[Secure-testing-commits] r57024 - in data: . DLA

2017-10-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-27 15:27:10 + (Fri, 27 Oct 2017) New Revision: 57024 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1148-1 for golang Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r57021 - data/CVE

2017-10-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-27 14:59:58 + (Fri, 27 Oct 2017) New Revision: 57021 Modified: data/CVE/list Log: update CVE-2017-15041: no full build required, and patch Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r57018 - data

2017-10-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-27 14:28:10 + (Fri, 27 Oct 2017) New Revision: 57018 Modified: data/dla-needed.txt Log: changed my mind, claim golang Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-10-27 14:16:08

[Secure-testing-commits] r56985 - data/CVE

2017-10-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-26 14:38:03 + (Thu, 26 Oct 2017) New Revision: 56985 Modified: data/CVE/list Log: link to jessie/stretch backports Modified: data/CVE/list === --- data/CVE/list 2017-10-26 14:14:47 UTC (rev

[Secure-testing-commits] r56979 - data/DLA

2017-10-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-26 13:43:10 + (Thu, 26 Oct 2017) New Revision: 56979 Modified: data/DLA/list Log: remove duplicate DLA for g-a Modified: data/DLA/list === --- data/DLA/list 2017-10-26 13:42:27 UTC (rev

[Secure-testing-commits] r56978 - in data: . DLA

2017-10-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-26 13:42:27 + (Thu, 26 Oct 2017) New Revision: 56978 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1145-1 for git-annex Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r56943 - in data: . CVE

2017-10-24 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-24 20:19:28 + (Tue, 24 Oct 2017) New Revision: 56943 Modified: data/CVE/list data/dla-needed.txt Log: LTS: unclaim tiff, update status (CVE-2017-11613 NOTABUG?) Modified: data/CVE/list === ---

[Secure-testing-commits] r56942 - data

2017-10-24 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-24 20:12:05 + (Tue, 24 Oct 2017) New Revision: 56942 Modified: data/dla-needed.txt Log: claim tiff issues in lts Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-10-24 17:15:27 UTC

[Secure-testing-commits] r56925 - data

2017-10-23 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-23 13:17:53 + (Mon, 23 Oct 2017) New Revision: 56925 Modified: data/dla-needed.txt Log: LTS: claim wpa and git-annex, comment on golang Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r56366 - in data: . DLA

2017-10-02 Thread Antoine Beaupré
Author: anarcat Date: 2017-10-02 21:01:41 + (Mon, 02 Oct 2017) New Revision: 56366 Modified: data/DLA/list data/dla-needed.txt Log: reserve DLA-1120-1 for git upload Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r56193 - data

2017-09-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-27 16:57:16 + (Wed, 27 Sep 2017) New Revision: 56193 Modified: data/dla-needed.txt Log: unclaim git-annex while i wait for upstream/maintainer feedback Modified: data/dla-needed.txt === ---

[Secure-testing-commits] r56192 - data

2017-09-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-27 16:37:17 + (Wed, 27 Sep 2017) New Revision: 56192 Modified: data/dla-needed.txt Log: i confirm wheezy is affected by git-annex bug Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r56191 - data

2017-09-27 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-27 16:12:26 + (Wed, 27 Sep 2017) New Revision: 56191 Modified: data/dla-needed.txt Log: claim git issues Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-09-27 14:11:48 UTC (rev

[Secure-testing-commits] r56171 - in data: . DLA

2017-09-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-26 20:32:16 + (Tue, 26 Sep 2017) New Revision: 56171 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1114-1 for ruby1.9.1 Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r56170 - in data: . DLA

2017-09-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-26 20:14:36 + (Tue, 26 Sep 2017) New Revision: 56170 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1113-1 for ruby1.8 Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r56169 - in data: . DLA

2017-09-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-26 19:57:13 + (Tue, 26 Sep 2017) New Revision: 56169 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1112-1 for rubygems Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r56162 - data/CVE

2017-09-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-26 18:23:59 + (Tue, 26 Sep 2017) New Revision: 56162 Modified: data/CVE/list Log: ruby 1.8 not affected by CVE-2017-14033: test does not fail Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r56157 - data

2017-09-26 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-26 17:13:51 + (Tue, 26 Sep 2017) New Revision: 56157 Modified: data/dla-needed.txt Log: claim back ruby packages Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-09-26 15:50:43 UTC

[Secure-testing-commits] r55391 - data

2017-09-02 Thread Antoine Beaupré
Author: anarcat Date: 2017-09-02 20:49:17 + (Sat, 02 Sep 2017) New Revision: 55391 Modified: data/dla-needed.txt Log: give up on ruby for a week Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-09-02 17:22:08

[Secure-testing-commits] r55323 - data/CVE

2017-08-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-31 15:59:41 + (Thu, 31 Aug 2017) New Revision: 55323 Modified: data/CVE/list Log: CVE-2017-0902 N/A in wheezy this concerns SRV lookup code that was introduce later (present in 2.1 and above) Modified: data/CVE/list

[Secure-testing-commits] r55322 - data/CVE

2017-08-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-31 15:55:50 + (Thu, 31 Aug 2017) New Revision: 55322 Modified: data/CVE/list Log: clarify descriptions of ruby vulnerabilities Modified: data/CVE/list === --- data/CVE/list 2017-08-31

[Secure-testing-commits] r55319 - data

2017-08-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-31 14:16:53 + (Thu, 31 Aug 2017) New Revision: 55319 Modified: data/dla-needed.txt Log: claim ruby(gems) LTS Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-31 14:06:42 UTC

[Secure-testing-commits] r55316 - in data: . CVE

2017-08-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-31 14:00:27 + (Thu, 31 Aug 2017) New Revision: 55316 Modified: data/CVE/list data/dla-needed.txt Log: CVE-2017-7506 not present in wheezy I have audited the code and the vulnerability is specifically bound to the reds_on_main_agent_monitors_config

[Secure-testing-commits] r55314 - data

2017-08-31 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-31 13:42:53 + (Thu, 31 Aug 2017) New Revision: 55314 Modified: data/dla-needed.txt Log: trying my luck with spice, make or break. Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r55259 - in data: . DLA

2017-08-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-30 19:33:44 + (Wed, 30 Aug 2017) New Revision: 55259 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1079-1 for libdbd-mysql-perl Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r55251 - data/CVE

2017-08-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-30 17:49:39 + (Wed, 30 Aug 2017) New Revision: 55251 Modified: data/CVE/list Log: add patchsets for libdbd-mysql-perl issues Modified: data/CVE/list === --- data/CVE/list 2017-08-30

[Secure-testing-commits] r55249 - data

2017-08-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-30 16:23:07 + (Wed, 30 Aug 2017) New Revision: 55249 Modified: data/dla-needed.txt Log: claim libdbd-mysql-perl Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-30 15:55:41 UTC

[Secure-testing-commits] r55245 - data

2017-08-30 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-30 15:17:36 + (Wed, 30 Aug 2017) New Revision: 55245 Modified: data/dla-needed.txt Log: dla-needed: timestamp a delay Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-30

[Secure-testing-commits] r55193 - data

2017-08-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-29 14:27:43 + (Tue, 29 Aug 2017) New Revision: 55193 Modified: data/dla-needed.txt Log: unclaim: no fix available for vorbis Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-29

[Secure-testing-commits] r55192 - data

2017-08-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-29 14:20:23 + (Tue, 29 Aug 2017) New Revision: 55192 Modified: data/dla-needed.txt Log: claim libvorbis Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-29 14:20:08 UTC (rev

[Secure-testing-commits] r55174 - in data: . DLA

2017-08-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-28 22:06:11 + (Mon, 28 Aug 2017) New Revision: 55174 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1072-1 for mercurial Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r55162 - data/CVE

2017-08-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-28 18:05:25 + (Mon, 28 Aug 2017) New Revision: 55162 Modified: data/CVE/list Log: update mercurial status: suse is useless and point to 3.7/4.1 backports Modified: data/CVE/list === ---

[Secure-testing-commits] r55158 - data/CVE

2017-08-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-28 15:36:09 + (Mon, 28 Aug 2017) New Revision: 55158 Modified: data/CVE/list Log: add possible fixes for mercurial path transversal Modified: data/CVE/list === --- data/CVE/list

[Secure-testing-commits] r55157 - data/CVE

2017-08-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-28 15:26:00 + (Mon, 28 Aug 2017) New Revision: 55157 Modified: data/CVE/list Log: document Suse patches for mercurial Modified: data/CVE/list === --- data/CVE/list 2017-08-28 15:21:29 UTC

[Secure-testing-commits] r55153 - data

2017-08-28 Thread Antoine Beaupré
Author: anarcat Date: 2017-08-28 14:58:26 + (Mon, 28 Aug 2017) New Revision: 55153 Modified: data/dla-needed.txt Log: claim mercurial LTS Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-08-28 13:03:56 UTC

[Secure-testing-commits] r54060 - data

2017-07-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-29 17:08:12 + (Sat, 29 Jul 2017) New Revision: 54060 Modified: data/dla-needed.txt Log: reintroduce apache2 in LTS queue Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-29

[Secure-testing-commits] r54059 - data

2017-07-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-29 16:58:11 + (Sat, 29 Jul 2017) New Revision: 54059 Modified: data/dla-needed.txt Log: LTS: maintainer will handle ipsec-tools Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r54058 - in data: . DLA

2017-07-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-29 16:54:11 + (Sat, 29 Jul 2017) New Revision: 54058 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-841-2 for apache2 Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r54055 - data

2017-07-29 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-29 15:47:41 + (Sat, 29 Jul 2017) New Revision: 54055 Modified: data/dla-needed.txt Log: add note about tcpdump Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-29 15:10:08 UTC

[Secure-testing-commits] r53745 - data

2017-07-21 Thread Antoine Beaupré
: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=858373 + NOTE: package available for testing, see 87r2x9rjjt@curie.anarc.at -- bind9 (Thorsten Alteholz) NOTE: probably regression introduced in latest upload -- -ca-certificates (Antoine Beaupré) - NOTE: 2017-03-27: maintainer

[Secure-testing-commits] r53707 - data

2017-07-20 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-20 14:43:33 + (Thu, 20 Jul 2017) New Revision: 53707 Modified: data/dla-needed.txt Log: note there's no patch on lame Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-20

[Secure-testing-commits] r53684 - data

2017-07-19 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-19 20:35:13 + (Wed, 19 Jul 2017) New Revision: 53684 Modified: data/dla-needed.txt Log: LTS: claim tcpdump Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-19 20:21:20 UTC (rev

[Secure-testing-commits] r53677 - data

2017-07-19 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-19 17:17:07 + (Wed, 19 Jul 2017) New Revision: 53677 Modified: data/dla-needed.txt Log: claim apache Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-19 16:51:48 UTC (rev

[Secure-testing-commits] r53676 - data

2017-07-19 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-19 16:51:48 + (Wed, 19 Jul 2017) New Revision: 53676 Modified: data/dla-needed.txt Log: unclaim ipsec-tools: let's wait for upstream more Modified: data/dla-needed.txt === --- data/dla-needed.txt

[Secure-testing-commits] r53668 - data/CVE

2017-07-19 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-19 14:32:01 + (Wed, 19 Jul 2017) New Revision: 53668 Modified: data/CVE/list Log: note the ipsec-tools patch is disputed Modified: data/CVE/list === --- data/CVE/list 2017-07-19 14:31:21

[Secure-testing-commits] r53667 - data/DLA

2017-07-19 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-19 14:31:21 + (Wed, 19 Jul 2017) New Revision: 53667 Modified: data/DLA/list Log: reserve DLA-1032-1 for u-u Modified: data/DLA/list === --- data/DLA/list 2017-07-19 13:11:17 UTC (rev

[Secure-testing-commits] r53587 - data

2017-07-17 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-17 19:48:59 + (Mon, 17 Jul 2017) New Revision: 53587 Modified: data/dla-needed.txt Log: claim ipsec-tools Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-17 19:43:01 UTC (rev

[Secure-testing-commits] r53572 - in data: . DLA

2017-07-17 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-17 18:42:23 + (Mon, 17 Jul 2017) New Revision: 53572 Modified: data/DLA/list data/dla-needed.txt Log: Reserve DLA-1029-1 for libmtp Modified: data/DLA/list === --- data/DLA/list

[Secure-testing-commits] r53268 - data

2017-07-07 Thread Antoine Beaupré
UTC (rev 53267) +++ data/dla-needed.txt 2017-07-08 00:46:58 UTC (rev 53268) @@ -70,8 +70,10 @@ libdbd-mysql-perl NOTE: 20170702, no upstream fix yet, so no need to bother maintainer yet, sent email later -- -libmtp (Antoine Beaupré) +libmtp NOTE: 20170702 sent email to maintainer + NOTE

[Secure-testing-commits] r53269 - data/CVE

2017-07-07 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-08 00:47:18 + (Sat, 08 Jul 2017) New Revision: 53269 Modified: data/CVE/list Log: link to reduced patchset for libmtp issues Modified: data/CVE/list === --- data/CVE/list 2017-07-08

[Secure-testing-commits] r53234 - data

2017-07-06 Thread Antoine Beaupré
-07-06 18:37:12 UTC (rev 53233) +++ data/dla-needed.txt 2017-07-06 19:05:56 UTC (rev 53234) @@ -32,9 +32,9 @@ NOTE: HTML escaped. Without trying, it's hard to know if the error NOTE: messages do include user controllable content. -- -eglibc (Antoine Beaupré) +eglibc NOTE: 20170510, patch

[Secure-testing-commits] r53233 - data

2017-07-06 Thread Antoine Beaupré
:38 UTC (rev 53232) +++ data/dla-needed.txt 2017-07-06 18:37:12 UTC (rev 53233) @@ -32,7 +32,7 @@ NOTE: HTML escaped. Without trying, it's hard to know if the error NOTE: messages do include user controllable content. -- -eglibc +eglibc (Antoine Beaupré) NOTE: 20170510, patch available

[Secure-testing-commits] r53232 - data

2017-07-06 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-06 18:34:38 + (Thu, 06 Jul 2017) New Revision: 53232 Modified: data/dla-needed.txt Log: update status of glibc Modified: data/dla-needed.txt === --- data/dla-needed.txt 2017-07-06 18:16:39 UTC

[Secure-testing-commits] r53231 - data/CVE

2017-07-06 Thread Antoine Beaupré
Author: anarcat Date: 2017-07-06 18:16:39 + (Thu, 06 Jul 2017) New Revision: 53231 Modified: data/CVE/list Log: bug #867477 filed against poppler for CVE-2017-9865 Modified: data/CVE/list === --- data/CVE/list

  1   2   3   4   >