[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update libmad status

2018-01-28 Thread Kurt Roeckx
Kurt Roeckx pushed to branch master at Debian Security Tracker / security-tracker Commits: 558a77a1 by Kurt Roeckx at 2018-01-28T23:37:46+01:00 Update libmad status - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add new squid issues (CVE-2018-1000024, CVE-2018-1000027)

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: bccece48 by Salvatore Bonaccorso at 2018-01-29T06:36:38+01:00 Add new squid issues (CVE-2018-124, CVE-2018-127) - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000027: #888720

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4d3a236b by Salvatore Bonaccorso at 2018-01-29T07:00:14+01:00 Add bug reference for CVE-2018-127: #888720 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000024/squid3: #888719

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: cb647745 by Salvatore Bonaccorso at 2018-01-29T06:59:22+01:00 Add bug reference for CVE-2018-124/squid3: #888719 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add clarifying note for CVE-2018-1000028

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 91c89b2b by Salvatore Bonaccorso at 2018-01-28T21:17:08+01:00 Add clarifying note for CVE-2018-128 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b6bf5fb0 by security tracker role at 2018-01-28T21:10:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add note for CVE-2017-15365 and older mariadb versions

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d271f45d by Salvatore Bonaccorso at 2018-01-28T23:15:32+01:00 Add note for CVE-2017-15365 and older mariadb versions The issue is possibly only introduced in the MariaDB 10.1 series when merging

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update information on CVE-2017-837{2, 3}/libmad

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 00d951de by Salvatore Bonaccorso at 2018-01-28T22:40:50+01:00 Update information on CVE-2017-837{2,3}/libmad The originally applied patch only covered the real underlying issue, which got now

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-15365/mariadb-10.1 as postponed

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 69e6fd0e by Salvatore Bonaccorso at 2018-01-28T23:08:41+01:00 Mark CVE-2017-15365/mariadb-10.1 as postponed Issue is minor, the mariadb-10.0 and mariadb-10.1 updates should preferably go in to

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6359/ming

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b5444714 by Salvatore Bonaccorso at 2018-01-28T10:34:43+01:00 Add CVE-2018-6359/ming - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6358/ming

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1f241ef6 by Salvatore Bonaccorso at 2018-01-28T10:35:42+01:00 Add CVE-2018-6358/ming - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d935cc0c by Salvatore Bonaccorso at 2018-01-28T10:13:51+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6353/electrum

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ac4acff by Salvatore Bonaccorso at 2018-01-28T10:15:08+01:00 Add CVE-2018-6353/electrum - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Re-evaluate CVE-2017-12581, electron itp'ed

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b69ec69 by Salvatore Bonaccorso at 2018-01-28T10:58:57+01:00 Re-evaluate CVE-2017-12581, electron itped - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000006/electron, itp'ed, #842420

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5832d95f by Salvatore Bonaccorso at 2018-01-28T10:57:47+01:00 Add CVE-2018-106/electron, itped, #842420 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d22150e7 by security tracker role at 2018-01-28T09:10:16+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6360/mpv

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ccec9fc6 by Salvatore Bonaccorso at 2018-01-28T11:06:47+01:00 Add CVE-2018-6360/mpv - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-12626/libapache-poi-java as no-dsa

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 941502f5 by Salvatore Bonaccorso at 2018-01-28T13:18:37+01:00 Mark CVE-2017-12626/libapache-poi-java as no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add mpv to dsa-needed

2018-01-28 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dcb99122 by Moritz Muehlenhoff at 2018-01-28T16:02:02+01:00 add mpv to dsa-needed - - - - - 1 changed file: - data/dsa-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2017-12626/libapache-poi-java

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ba274a51 by Salvatore Bonaccorso at 2018-01-28T13:25:27+01:00 Add bug reference for CVE-2017-12626/libapache-poi-java - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-6360

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0024d153 by Salvatore Bonaccorso at 2018-01-28T14:23:22+01:00 Add bug reference for CVE-2018-6360 - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] lts: update swftools status

2018-01-28 Thread Guido Günther
-needed.txt = --- a/data/dla-needed.txt +++ b/data/dla-needed.txt @@ -66,6 +66,7 @@ p7zip swftools (Guido Günther) NOTE: 20171118: At least CVE-2017-16797 is present. (lamby) NOTE: 20171210: likely to be turned into a pkg with limited sec support + NOTE 20180128

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add assigned CVE for electrum issue: #886683

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6a6ae183 by Salvatore Bonaccorso at 2018-01-28T12:52:49+01:00 Add assigned CVE for electrum issue: #886683 The CVE unfortunately did not reach yet the MITRE database. But while checking another

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] wireshark DSA

2018-01-28 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 61a63fa4 by Moritz Muehlenhoff at 2018-01-28T16:50:23+01:00 wireshark DSA - - - - - 3 changed files: - data/CVE/list - data/DSA/list - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] link upstream commits for CVE-2018-5308/libpodofo

2018-01-28 Thread Mattia Rizzolo
Mattia Rizzolo pushed to branch master at Debian Security Tracker / security-tracker Commits: 8a7a655c by Mattia Rizzolo at 2018-01-28T18:03:46+01:00 link upstream commits for CVE-2018-5308/libpodofo Signed-off-by: Mattia Rizzolo mat...@debian.org - - - - - 1 changed file: - data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add libtasn1-6 and gitlab to dsa-needed

2018-01-28 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 5e855428 by Moritz Muehlenhoff at 2018-01-28T16:59:30+01:00 add libtasn1-6 and gitlab to dsa-needed - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Take libtasn1-6 from dsa-needed list

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a49d15a by Salvatore Bonaccorso at 2018-01-28T17:00:40+01:00 Take libtasn1-6 from dsa-needed list - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: podofo no-dsa

2018-01-28 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7c897c89 by Moritz Muehlenhoff at 2018-01-28T17:18:16+01:00 podofo no-dsa - - - - - c9218c53 by Moritz Muehlenhoff at 2018-01-28T17:25:30+01:00 Merge branch master of

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000028/linux

2018-01-28 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ee7f076a by Salvatore Bonaccorso at 2018-01-28T19:34:30+01:00 Add CVE-2018-128/linux - - - - - 1 changed file: - data/CVE/list Changes: =