Author: anarcat
Date: 2016-01-30 23:05:27 + (Sat, 30 Jan 2016)
New Revision: 39361
Modified:
data/CVE/list
Log:
Summary: link to packages for icu
Modified: data/CVE/list
===
--- data/CVE/list 2016-01-30 22:58:39 UTC (re
UTC (rev 39356)
@@ -70,8 +70,6 @@
php5 (Thorsten Alteholz)
NOTE: next upload end of December
--
-phpmyadmin (Antoine Beaupré)
---
prosody
NOTE: affected code in core/s2smanager.lua
--
___
Secure-testing-commits mailing list
Secure-testing
Author: anarcat
Date: 2016-01-30 20:04:08 + (Sat, 30 Jan 2016)
New Revision: 39357
Modified:
data/DLA/list
data/dla-needed.txt
Log:
Reserve DLA-407-1 for prosody
Modified: data/DLA/list
===
--- data/DLA/list 2016-01-3
UTC (rev 39354)
+++ data/dla-needed.txt 2016-01-30 19:02:15 UTC (rev 39355)
@@ -70,7 +70,7 @@
php5 (Thorsten Alteholz)
NOTE: next upload end of December
--
-phpmyadmin
+phpmyadmin (Antoine Beaupré)
--
prosody
NOTE: affected code in core/s2smanager.lua
UTC (rev 39352)
+++ data/dla-needed.txt 2016-01-30 18:01:31 UTC (rev 39353)
@@ -35,7 +35,7 @@
--
gosa (Mike Gabriel)
--
-icu
+icu (Antoine Beaupré)
NOTE: check comments on CVE-2016-0494 as well
--
imagemagick
___
Secure-testing-commits mailing
Author: anarcat
Date: 2016-01-30 17:08:02 + (Sat, 30 Jan 2016)
New Revision: 39352
Modified:
data/CVE/list
Log:
patches for CVE-2016-0494 and CVE-CVE-2015-4844 were reversed
f556d4c82ef1 appeared later than dbb4e2bdfa9e and the latter is refered to in
the redhat Bug https://bugzilla.redha
Author: anarcat
Date: 2016-01-29 21:01:23 + (Fri, 29 Jan 2016)
New Revision: 39309
Modified:
data/CVE/list
Log:
Summary: can't reproduce cpio vuln, add details of openssh
Modified: data/CVE/list
===
--- data/CVE/list 20
Author: anarcat
Date: 2016-01-29 17:16:08 + (Fri, 29 Jan 2016)
New Revision: 39302
Modified:
data/CVE/list
Log:
Summary: clarify why we ignore 2015-3197
Modified: data/CVE/list
===
--- data/CVE/list 2016-01-29 17:05:09
Author: anarcat
Date: 2016-01-06 16:25:43 + (Wed, 06 Jan 2016)
New Revision: 38733
Modified:
data/dla-needed.txt
Log:
xscreensaver mistakenly added to DLA
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2016-01-06 15
Author: anarcat
Date: 2016-01-05 20:15:25 + (Tue, 05 Jan 2016)
New Revision: 38719
Modified:
data/dla-needed.txt
data/dsa-needed.txt
Log:
self-assign xscreensaver
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 20
Author: anarcat
Date: 2015-12-31 22:26:35 + (Thu, 31 Dec 2015)
New Revision: 38626
Modified:
data/CVE/list
Log:
Summary: crossref ganeti issues
Modified: data/CVE/list
===
--- data/CVE/list 2015-12-31 21:10:11 UTC (rev
needed.txt
===
--- data/dla-needed.txt 2015-12-31 20:17:56 UTC (rev 38623)
+++ data/dla-needed.txt 2015-12-31 20:57:51 UTC (rev 38624)
@@ -49,8 +49,6 @@
--
quassel (Scott K)
--
-redmine (Antoine Beaupré)
---
samba (Santiago R.R.)
--
srtp (Thorsten Alteholz)
Author: anarcat
Date: 2015-12-31 20:17:56 + (Thu, 31 Dec 2015)
New Revision: 38623
Modified:
data/CVE/list
Log:
Summary: close all issues in redmine for LTS as it's unsupported
this should really be automated, as i spent hours working on those
patches only to discover it wasn't supported
Author: anarcat
Date: 2015-12-29 21:31:55 + (Tue, 29 Dec 2015)
New Revision: 38597
Modified:
data/CVE/list
Log:
Summary: update status of 2012 redmine issues
Modified: data/CVE/list
===
--- data/CVE/list 2015-12-29 21:1
Author: anarcat
Date: 2015-12-29 19:36:06 + (Tue, 29 Dec 2015)
New Revision: 38595
Modified:
data/CVE/list
Log:
Summary: CVE-2015-8537 not in squeeze
Modified: data/CVE/list
===
--- data/CVE/list 2015-12-29 08:46:13 UTC
Author: anarcat
Date: 2015-12-11 20:06:23 + (Fri, 11 Dec 2015)
New Revision: 38231
Modified:
data/CVE/list
Log:
update status of some redmine issues
Modified: data/CVE/list
===
--- data/CVE/list 2015-12-11 17:30:43 UTC (
Author: anarcat
Date: 2015-12-09 02:19:10 + (Wed, 09 Dec 2015)
New Revision: 38181
Modified:
data/CVE/list
Log:
add links to more patches in redmine issues
Modified: data/CVE/list
===
--- data/CVE/list 2015-12-09 02:01:0
:16:19 UTC (rev 38179)
+++ data/dla-needed.txt 2015-12-09 02:01:06 UTC (rev 38180)
@@ -44,7 +44,7 @@
--
quassel (Scott K)
--
-redmine
+redmine (Antoine Beaupré)
--
squid
NOTE: CVE-2015-5400: Fix is hard to backport, and default configuration is
not affected
Author: anarcat
Date: 2015-11-26 21:59:14 + (Thu, 26 Nov 2015)
New Revision: 37937
Modified:
data/CVE/list
data/DLA/list
Log:
squeeze is not vulnerable to CVE-2015-0859
Modified: data/CVE/list
===
--- data/CVE/list 20
Author: anarcat
Date: 2015-11-25 16:37:24 + (Wed, 25 Nov 2015)
New Revision: 37896
Modified:
data/DLA/list
Log:
Reserve DLA-348-1 for smokeping
Modified: data/DLA/list
===
--- data/DLA/list 2015-11-25 16:29:07 UTC (rev 3
Author: anarcat
Date: 2013-01-09 17:11:21 + (Wed, 09 Jan 2013)
New Revision: 20866
Modified:
data/CVE/list
Log:
rails 2.3 (so all of the rails package) is not affected by CVE-2013-0155
Modified: data/CVE/list
===
--- data/CVE/
301 - 321 of 321 matches
Mail list logo