[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] unzip no-dsa

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2ce0021d by Moritz Muehlenhoff at 2018-02-07T19:23:29+01:00 unzip no-dsa - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] zziplib no-dsa

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 2fb68875 by Moritz Muehlenhoff at 2018-02-07T20:23:02+01:00 zziplib no-dsa git unimportant jhead unimportant cpio no-dsa - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bugnumbers for embedded code copies of python-magic, remove fixed package relatorio.

2018-02-07 Thread Mathias Behrle
Mathias Behrle pushed to branch master at Debian Security Tracker / security-tracker Commits: 48865ffd by Mathias Behrle at 2018-02-07T19:00:37+01:00 Add bugnumbers for embedded code copies of python-magic, remove fixed package relatorio. - - - - - 1 changed file: -

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] LTS: claim graphicsmagick in dla-needed.txt

2018-02-07 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: f9db8690 by Roberto C. Sánchez at 2018-02-07T13:19:35-05:00 LTS: claim graphicsmagick in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Remove explicitly wheezy tagged entry

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 28956819 by Salvatore Bonaccorso at 2018-02-07T20:24:57+01:00 Remove explicitly wheezy tagged entry The issue was released as DLA and is included in data/DLA/list. Tracker cross-references from

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DSA for libtasn1-6 update

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 50a47bbe by Salvatore Bonaccorso at 2018-02-07T19:58:02+01:00 Reserve DSA for libtasn1-6 update - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Follow syntax for bug notation

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d0426648 by Salvatore Bonaccorso at 2018-02-07T19:18:38+01:00 Follow syntax for bug notation - - - - - 1 changed file: - data/embedded-code-copies Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-6764/libvirt

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d6e5da8 by Salvatore Bonaccorso at 2018-02-07T19:16:45+01:00 Update information for CVE-2018-6764/libvirt - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-6794/suricata

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 25d80030 by Salvatore Bonaccorso at 2018-02-07T19:34:42+01:00 Add bug reference for CVE-2018-6794/suricata - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update postgresql-9.6 entries: removed from the archive in unstable

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ad90b5f5 by Salvatore Bonaccorso at 2018-02-07T19:36:00+01:00 Update postgresql-9.6 entries: removed from the archive in unstable - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update CVE-2018-1053 and add CVE-2018-1052

2018-02-07 Thread Christoph Berg
Christoph Berg pushed to branch master at Debian Security Tracker / security-tracker Commits: 0073dc32 by Christoph Berg at 2018-02-07T20:21:15+01:00 Update CVE-2018-1053 and add CVE-2018-1052 - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark chromium as postponed, we're following Chromium releases

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 3ec6d4a5 by Moritz Muehlenhoff at 2018-02-07T19:22:03+01:00 Mark chromium as postponed, were following Chromium releases - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000035: #889838

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 07cbb787 by Salvatore Bonaccorso at 2018-02-07T19:21:08+01:00 Add bug reference for CVE-2018-135: #889838 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-6764/libvirt

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a1b69168 by Salvatore Bonaccorso at 2018-02-07T19:20:23+01:00 Add bug reference for CVE-2018-6764/libvirt - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1053/postgresql*

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eec69cc6 by Salvatore Bonaccorso at 2018-02-07T19:33:50+01:00 Add CVE-2018-1053/postgresql* - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] DLA-1271-1 postgresql-9.1 - security update

2018-02-07 Thread Christoph Berg
Christoph Berg pushed to branch master at Debian Security Tracker / security-tracker Commits: ab68a042 by Christoph Berg at 2018-02-07T19:30:55+01:00 DLA-1271-1 postgresql-9.1 - security update - - - - - 1 changed file: - data/DLA/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Do not ignore CVE-2017-15698 and claim tomcat-native in dla-needed.txt

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 327b8417 by Markus Koschany at 2018-02-07T21:42:27+01:00 Do not ignore CVE-2017-15698 and claim tomcat-native in dla-needed.txt - - - - - 2 changed files: - data/CVE/list - data/dla-needed.txt

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add mpv to dsa-needed (regression fix needed)

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e615bce0 by Salvatore Bonaccorso at 2018-02-07T23:04:33+01:00 Add mpv to dsa-needed (regression fix needed) - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-6791, kde-runtime: Wheezy is not affected

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: d22440f3 by Markus Koschany at 2018-02-08T00:28:22+01:00 CVE-2018-6791,kde-runtime: Wheezy is not affected This version already uses the expandMacrosShellQuote function. - - - - - 1 changed file:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2017-16612, wayland: Wheezy is not affected

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: bd6ffbea by Markus Koschany at 2018-02-07T21:20:49+01:00 CVE-2017-16612,wayland: Wheezy is not affected - - - - - a4373032 by Markus Koschany at 2018-02-07T21:21:20+01:00 Merge branch master of

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-1000035, unzip: Wheezy builds with fortified source.

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 03f4cf05 by Markus Koschany at 2018-02-07T22:00:46+01:00 CVE-2018-135,unzip: Wheezy builds with fortified source. - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6791 (KDE plasma)

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: d5f4533c by Salvatore Bonaccorso at 2018-02-07T21:16:31+01:00 Add CVE-2018-6791 (KDE plasma) Code present in kde-runtime and plasma-workspace. - - - - - 1 changed file: - data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark python2.7 and python2.6 no-dsa for CVE-2018-1000030

2018-02-07 Thread Brian May
Brian May pushed to branch master at Debian Security Tracker / security-tracker Commits: ca900181 by Brian May at 2018-02-08T07:57:33+11:00 Mark python2.7 and python2.6 no-dsa for CVE-2018-130 This has already been done for Jessie and Stretch. Plus upstream thinks this isnt a security

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1ceafe59 by security tracker role at 2018-02-07T21:10:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2016-254{0, 1}/audacity

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9d959011 by Salvatore Bonaccorso at 2018-02-07T22:22:14+01:00 Add CVE-2016-254{0,1}/audacity - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 03c0fb9a by Salvatore Bonaccorso at 2018-02-07T22:40:12+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Reserve DSA for django-anymail

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 45bcc1b1 by Salvatore Bonaccorso at 2018-02-07T22:46:44+01:00 Reserve DSA for django-anymail - - - - - 1 changed file: - data/DSA/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6790/plasma-workspace

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: eb2240d5 by Salvatore Bonaccorso at 2018-02-07T21:45:47+01:00 Add CVE-2018-6790/plasma-workspace - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-12174 as NFU

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 735fa8ce by Salvatore Bonaccorso at 2018-02-08T07:25:23+01:00 Mark CVE-2017-12174 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] update note mailman

2018-02-07 Thread Abhijith PA
Abhijith PA pushed to branch master at Debian Security Tracker / security-tracker Commits: a2d04760 by Abhijith PA at 2018-02-08T13:13:03+05:30 update note mailman - - - - - 1 changed file: - data/dla-needed.txt Changes: = data/dla-needed.txt

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-6594: Add commit for PyCryptodome

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9085e5c5 by Salvatore Bonaccorso at 2018-02-08T06:58:27+01:00 CVE-2018-6594: Add commit for PyCryptodome - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1196 as NFU

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4be30ca3 by Salvatore Bonaccorso at 2018-02-08T07:30:30+01:00 Mark CVE-2018-1196 as NFU - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1199

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 32a93a15 by Salvatore Bonaccorso at 2018-02-08T07:33:10+01:00 Add CVE-2018-1199 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add todo item for CVE-2017-10689

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9374b682 by Salvatore Bonaccorso at 2018-02-08T07:18:32+01:00 Add todo item for CVE-2017-10689 - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1041/libjboss-remoting-java

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c4eafc86 by Salvatore Bonaccorso at 2018-02-08T07:28:22+01:00 Add CVE-2018-1041/libjboss-remoting-java - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1056/advancecomp: #889270

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fd9456e1 by Salvatore Bonaccorso at 2018-02-08T07:54:25+01:00 Add CVE-2018-1056/advancecomp: #889270 - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6508/puppet-module-puppetlabs-{apt, apache, mysql}

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 37bf3bdb by Salvatore Bonaccorso at 2018-02-08T07:38:52+01:00 Add CVE-2018-6508/puppet-module-puppetlabs-{apt,apache,mysql} - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2017-10689/puppet

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4cf27bb9 by Salvatore Bonaccorso at 2018-02-08T07:15:01+01:00 Add CVE-2017-10689/puppet - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6799/graphicsmagick

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e79bdd81 by Salvatore Bonaccorso at 2018-02-07T10:21:33+01:00 Add CVE-2018-6799/graphicsmagick - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 87baaf23 by security tracker role at 2018-02-07T09:10:17+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6794/suricata

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f95ab4bb by Salvatore Bonaccorso at 2018-02-07T10:24:59+01:00 Add CVE-2018-6794/suricata - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-6799 graphicsmagick upload 1.3.28-1 included the fix

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: f39f689a by Salvatore Bonaccorso at 2018-02-07T10:23:27+01:00 CVE-2018-6799 graphicsmagick upload 1.3.28-1 included the fix - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 31b1c66d by Salvatore Bonaccorso at 2018-02-07T10:30:57+01:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6644/sblim-sfcb

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 085253fc by Salvatore Bonaccorso at 2018-02-07T10:37:42+01:00 Add CVE-2018-6644/sblim-sfcb - - - - - 1 changed file: - data/CVE/list Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Claim uwsgi in dla-needed.txt

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 787098d2 by Markus Koschany at 2018-02-07T15:33:14+01:00 Claim uwsgi in dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] CVE-2018-6759, binutils: Ignored in Wheezy. Minor issue.

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: b55d397e by Markus Koschany at 2018-02-07T16:08:22+01:00 CVE-2018-6759,binutils: Ignored in Wheezy. Minor issue. - - - - - 1 changed file: - data/CVE/list Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add graphicsmagick to dla-needed.txt

2018-02-07 Thread Markus Koschany
Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker Commits: 13055315 by Markus Koschany at 2018-02-07T16:06:48+01:00 Add graphicsmagick to dla-needed.txt - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] add vlc, libmad and ffmpeg to dsa-needed

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 63aa48a9 by Moritz Muehlenhoff at 2018-02-07T16:50:28+01:00 add vlc, libmad and ffmpeg to dsa-needed - - - - - 1 changed file: - data/dsa-needed.txt Changes:

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 389-ds-base fixed

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 7d78cfd5 by Moritz Muehlenhoff at 2018-02-07T16:52:46+01:00 389-ds-base fixed - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] new unzip issues

2018-02-07 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 739fc983 by Moritz Muehlenhoff at 2018-02-07T16:59:13+01:00 new unzip issues - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6789/exim4

2018-02-07 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: ce25a578 by Salvatore Bonaccorso at 2018-02-07T13:54:57+01:00 Add CVE-2018-6789/exim4 No details are yet published by upstream appart the announce in