Author: jmm
Date: 2017-08-11 16:05:03 + (Fri, 11 Aug 2017)
New Revision: 54625
Modified:
data/CVE/list
data/DSA/list
Log:
another CVE ID fixed in openjdk DSA
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11
Author: jmm
Date: 2017-08-11 18:15:52 + (Fri, 11 Aug 2017)
New Revision: 54626
Modified:
data/CVE/list
Log:
sqlite, libical no-dsa
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 16:05:03 UTC (rev 54625)
+++
Author: jmm
Date: 2017-08-11 18:44:31 + (Fri, 11 Aug 2017)
New Revision: 54631
Modified:
data/CVE/list
Log:
record openjpeg2 fix
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 18:34:30 UTC (rev 54630)
+++
Author: jmm
Date: 2017-08-11 18:30:44 + (Fri, 11 Aug 2017)
New Revision: 54629
Modified:
data/dsa-needed.txt
Log:
add iortcw to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11 18:22:25 UTC
Author: jmm
Date: 2017-08-11 18:34:30 + (Fri, 11 Aug 2017)
New Revision: 54630
Modified:
data/CVE/list
Log:
libgxps no-dsa
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 18:30:44 UTC (rev 54629)
+++
Author: jmm
Date: 2017-08-11 18:47:46 + (Fri, 11 Aug 2017)
New Revision: 54632
Modified:
data/CVE/list
Log:
openjpeg fixed
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 18:44:31 UTC (rev 54631)
+++
Author: jmm
Date: 2017-08-11 18:22:25 + (Fri, 11 Aug 2017)
New Revision: 54628
Modified:
data/dsa-needed.txt
Log:
add libmspack to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11 18:17:56 UTC
Author: jmm
Date: 2017-08-11 15:58:22 + (Fri, 11 Aug 2017)
New Revision: 54624
Modified:
data/CVE/list
Log:
openjfx, torrent-rasterbar no-dsa
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 15:19:30 UTC (rev
Author: jmm
Date: 2017-08-11 18:17:56 + (Fri, 11 Aug 2017)
New Revision: 54627
Modified:
data/CVE/list
Log:
qemu ignored
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 18:15:52 UTC (rev 54626)
+++
Author: carnil
Date: 2017-08-11 06:22:39 + (Fri, 11 Aug 2017)
New Revision: 54597
Modified:
data/CVE/list
Log:
Adjust state for one imagemagick issue
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 06:03:38 UTC
Author: roberto
Date: 2017-08-11 06:03:38 + (Fri, 11 Aug 2017)
New Revision: 54596
Modified:
data/CVE/list
Log:
Note that CVE-2017-11753 does not affect imagemagic in wheezy/jessie/stretch
Modified: data/CVE/list
===
---
Author: sectracker
Date: 2017-08-11 09:10:16 + (Fri, 11 Aug 2017)
New Revision: 54600
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 06:40:25 UTC (rev 54599)
+++
Author: carnil
Date: 2017-08-11 06:24:54 + (Fri, 11 Aug 2017)
New Revision: 54598
Modified:
data/CVE/list
Log:
Add CVE-2017-7556, NFU
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 06:22:39 UTC (rev 54597)
+++
Author: roberto
Date: 2017-08-11 06:40:25 + (Fri, 11 Aug 2017)
New Revision: 54599
Modified:
data/CVE/list
Log:
Add references for upstream commits that fix CVE-2017-12427
Modified: data/CVE/list
===
--- data/CVE/list
Author: lamby
Date: 2017-08-11 12:53:44 + (Fri, 11 Aug 2017)
New Revision: 54617
Modified:
data/DLA/list
data/dla-needed.txt
Log:
Reserve DLA-1052-1 for CVE-2017-9800/subversion.
Modified: data/DLA/list
===
---
Author: seb
Date: 2017-08-11 13:40:36 + (Fri, 11 Aug 2017)
New Revision: 54618
Modified:
lib/python/security_db.py
Log:
Make sure comment is initialized
Modified: lib/python/security_db.py
===
--- lib/python/security_db.py
Author: carnil
Date: 2017-08-11 11:48:49 + (Fri, 11 Aug 2017)
New Revision: 54612
Modified:
data/CVE/list
Log:
Add note for CVE-2017-1000111
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:48:35 UTC (rev
Author: lamby
Date: 2017-08-11 11:48:35 + (Fri, 11 Aug 2017)
New Revision: 54611
Modified:
data/dla-needed.txt
Log:
Triage tenshi for LTS
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 11:46:21 UTC (rev
Author: jmm
Date: 2017-08-11 13:53:27 + (Fri, 11 Aug 2017)
New Revision: 54619
Modified:
data/next-point-update.txt
Log:
krb5 no-dsa
Modified: data/next-point-update.txt
===
--- data/next-point-update.txt 2017-08-11
Author: carnil
Date: 2017-08-11 11:19:15 + (Fri, 11 Aug 2017)
New Revision: 54601
Modified:
data/CVE/list
Log:
Process NFUs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 09:10:16 UTC (rev 54600)
+++
Author: lamby
Date: 2017-08-11 11:39:55 + (Fri, 11 Aug 2017)
New Revision: 54606
Modified:
data/dla-needed.txt
Log:
Triage git for LTS
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 11:38:51 UTC (rev
Author: lamby
Date: 2017-08-11 11:44:14 + (Fri, 11 Aug 2017)
New Revision: 54609
Modified:
data/CVE/list
Log:
Add note for CVE-2017-12756 in extplorer
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:42:39
Author: lamby
Date: 2017-08-11 11:49:57 + (Fri, 11 Aug 2017)
New Revision: 54613
Modified:
data/dla-needed.txt
Log:
Claim subversion in data/dla-needed.txt
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11
Author: carnil
Date: 2017-08-11 12:17:27 + (Fri, 11 Aug 2017)
New Revision: 54614
Modified:
data/CVE/list
Log:
mercurial issues fixed in unstable
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:49:57 UTC
Author: lamby
Date: 2017-08-11 11:38:51 + (Fri, 11 Aug 2017)
New Revision: 54605
Modified:
data/dla-needed.txt
Log:
Triage mercurial for LTS
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 11:31:50 UTC
Author: lamby
Date: 2017-08-11 11:42:39 + (Fri, 11 Aug 2017)
New Revision: 54608
Modified:
data/dla-needed.txt
Log:
Triage subversion for LTS
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 11:41:50 UTC
Author: lamby
Date: 2017-08-11 11:41:50 + (Fri, 11 Aug 2017)
New Revision: 54607
Modified:
data/CVE/list
Log:
Triage CVE-2017-7548 for wheezy
in wheezy only provides PL/Perl)
Modified: data/CVE/list
===
--- data/CVE/list
Author: lamby
Date: 2017-08-11 12:27:29 + (Fri, 11 Aug 2017)
New Revision: 54616
Modified:
data/CVE/list
Log:
Revert "Triage CVE-2017-7548 for wheezy"
This reverts commit 3de40bafc9af5a539382eb17891a44893a9693ce.
Modified: data/CVE/list
Author: carnil
Date: 2017-08-11 11:31:50 + (Fri, 11 Aug 2017)
New Revision: 54604
Modified:
data/CVE/list
Log:
Add CVE-2017-7674, tomcat issue
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:31:38 UTC (rev
Author: carnil
Date: 2017-08-11 11:31:38 + (Fri, 11 Aug 2017)
New Revision: 54603
Modified:
data/CVE/list
Log:
CVE-2017-7675: mark jessie as not-affected
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:25:05
Author: lamby
Date: 2017-08-11 11:46:21 + (Fri, 11 Aug 2017)
New Revision: 54610
Modified:
data/CVE/list
Log:
CVE-2017-11746: add commit link
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:44:14 UTC (rev
Author: carnil
Date: 2017-08-11 12:18:19 + (Fri, 11 Aug 2017)
New Revision: 54615
Modified:
data/CVE/list
Log:
Record fixed version for CVE-2017-11590
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 12:17:27
Author: carnil
Date: 2017-08-11 11:25:05 + (Fri, 11 Aug 2017)
New Revision: 54602
Modified:
data/CVE/list
Log:
AddCVE-2017-7675/tomcat
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 11:19:15 UTC (rev 54601)
Author: apo
Date: 2017-08-11 19:59:13 + (Fri, 11 Aug 2017)
New Revision: 54642
Modified:
data/dla-needed.txt
Log:
Update status of freerdp.
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 19:59:09 UTC
Author: carnil
Date: 2017-08-11 21:14:14 + (Fri, 11 Aug 2017)
New Revision: 54648
Modified:
data/CVE/list
Log:
Process some NFUs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 21:10:13 UTC (rev 54647)
+++
Author: carnil
Date: 2017-08-11 19:28:10 + (Fri, 11 Aug 2017)
New Revision: 54637
Modified:
data/CVE/list
Log:
Add CVE-2017-12836/cvs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:13:33 UTC (rev 54636)
+++
Author: carnil
Date: 2017-08-11 19:59:09 + (Fri, 11 Aug 2017)
New Revision: 54641
Modified:
data/CVE/list
Log:
Add CVE-2015-1555
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:55:59 UTC (rev 54640)
+++
Author: carnil
Date: 2017-08-11 21:22:39 + (Fri, 11 Aug 2017)
New Revision: 54649
Modified:
data/CVE/list
Log:
Process more NFUs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 21:14:14 UTC (rev 54648)
+++
Author: jmm
Date: 2017-08-11 22:11:43 + (Fri, 11 Aug 2017)
New Revision: 54654
Modified:
data/dsa-needed.txt
Log:
add libgd2 and fontforge to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11
Author: jmm
Date: 2017-08-11 19:05:48 + (Fri, 11 Aug 2017)
New Revision: 54633
Modified:
data/CVE/list
Log:
one openjpeg issue fixed in git
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 18:47:46 UTC (rev
Author: jmm
Date: 2017-08-11 19:13:33 + (Fri, 11 Aug 2017)
New Revision: 54636
Modified:
data/CVE/list
Log:
additional openjpeg fix
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:09:27 UTC (rev 54635)
+++
Author: apo
Date: 2017-08-11 19:55:59 + (Fri, 11 Aug 2017)
New Revision: 54640
Modified:
data/dla-needed.txt
Log:
Claim git in dla-needed.txt
Modified: data/dla-needed.txt
===
--- data/dla-needed.txt 2017-08-11 19:43:31 UTC
Author: carnil
Date: 2017-08-11 20:20:49 + (Fri, 11 Aug 2017)
New Revision: 54643
Modified:
data/CVE/list
Log:
Update CVE-2017-0641/libvpx
Note for reviewes: someone with more knowledge of libvpx should still
properly evaluate this CVE.
Modified: data/CVE/list
Author: jmm
Date: 2017-08-11 20:42:41 + (Fri, 11 Aug 2017)
New Revision: 54646
Modified:
data/CVE/list
Log:
gsoap no-dsa
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 20:24:58 UTC (rev 54645)
+++
Author: seb
Date: 2017-08-11 22:06:34 + (Fri, 11 Aug 2017)
New Revision: 54652
Modified:
data/dsa-needed.txt
Log:
Add and take cvs (CVE-2017-12836)
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11 22:00:12
Author: carnil
Date: 2017-08-11 20:24:58 + (Fri, 11 Aug 2017)
New Revision: 54645
Modified:
data/CVE/list
Log:
Add reference for CVE-2017-9787
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 20:23:26 UTC (rev
Author: jmm
Date: 2017-08-11 19:09:27 + (Fri, 11 Aug 2017)
New Revision: 54635
Modified:
data/CVE/list
Log:
two additional openjpeg upstream fixes
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:07:40 UTC
Author: carnil
Date: 2017-08-11 19:43:31 + (Fri, 11 Aug 2017)
New Revision: 54639
Modified:
data/CVE/list
Log:
Add bug reference for cvs, #871810
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:38:48 UTC
Author: jmm
Date: 2017-08-11 20:23:26 + (Fri, 11 Aug 2017)
New Revision: 54644
Modified:
data/CVE/list
Log:
jbikit unimportant
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 20:20:49 UTC (rev 54643)
+++
Author: sectracker
Date: 2017-08-11 21:10:13 + (Fri, 11 Aug 2017)
New Revision: 54647
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 20:42:41 UTC (rev 54646)
+++
Author: jmm
Date: 2017-08-11 21:39:12 + (Fri, 11 Aug 2017)
New Revision: 54650
Modified:
data/CVE/list
Log:
NFUs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 21:22:39 UTC (rev 54649)
+++ data/CVE/list
Author: jmm
Date: 2017-08-11 22:00:12 + (Fri, 11 Aug 2017)
New Revision: 54651
Modified:
data/CVE/list
data/dsa-needed.txt
Log:
add supervisor to dsa-needed
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11
Author: jmm
Date: 2017-08-11 22:13:47 + (Fri, 11 Aug 2017)
New Revision: 54655
Modified:
data/dsa-needed.txt
Log:
add tiff to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11 22:11:43 UTC (rev
Author: carnil
Date: 2017-08-11 19:07:40 + (Fri, 11 Aug 2017)
New Revision: 54634
Modified:
data/CVE/list
Log:
Actually mark jessie as no-dsa
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:05:48 UTC (rev
Author: jmm
Date: 2017-08-11 22:07:06 + (Fri, 11 Aug 2017)
New Revision: 54653
Modified:
data/CVE/list
Log:
fontforge upstream fixes
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 22:06:34 UTC (rev 54652)
+++
Author: jmm
Date: 2017-08-11 19:38:48 + (Fri, 11 Aug 2017)
New Revision: 54638
Modified:
data/CVE/list
Log:
mark opus as ignored
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-11 19:28:10 UTC (rev 54637)
+++
Author: roberto
Date: 2017-08-12 01:39:27 + (Sat, 12 Aug 2017)
New Revision: 54661
Modified:
data/CVE/list
Log:
Add references for upstream commits that fix CVE-2017-12430
Modified: data/CVE/list
===
--- data/CVE/list
Author: roberto
Date: 2017-08-12 01:53:43 + (Sat, 12 Aug 2017)
New Revision: 54662
Modified:
data/CVE/list
Log:
Add references for upstream commits that fix CVE-2017-12431
Modified: data/CVE/list
===
--- data/CVE/list
Author: jmm
Date: 2017-08-12 03:02:21 + (Sat, 12 Aug 2017)
New Revision: 54664
Modified:
data/CVE/list
Log:
exiv2 no-dsa
imagemagick commit refs
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-12 02:15:48 UTC
Author: jmm
Date: 2017-08-12 00:37:14 + (Sat, 12 Aug 2017)
New Revision: 54657
Modified:
data/CVE/list
Log:
openjpeg2 NMUed
Modified: data/CVE/list
===
--- data/CVE/list 2017-08-12 00:23:26 UTC (rev 54656)
+++
Author: jmm
Date: 2017-08-12 01:22:53 + (Sat, 12 Aug 2017)
New Revision: 54660
Modified:
data/dsa-needed.txt
Log:
add tomcat8 to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-12 00:47:27 UTC
Author: jmm
Date: 2017-08-12 02:15:48 + (Sat, 12 Aug 2017)
New Revision: 54663
Modified:
data/CVE/list
data/dsa-needed.txt
Log:
add and take botan in dsa-needed
Modified: data/CVE/list
===
--- data/CVE/list
Author: jmm
Date: 2017-08-12 00:23:26 + (Sat, 12 Aug 2017)
New Revision: 54656
Modified:
data/DSA/list
data/dsa-needed.txt
Log:
zabbix DSA
Modified: data/DSA/list
===
--- data/DSA/list 2017-08-11 22:13:47 UTC (rev
Author: jmm
Date: 2017-08-12 00:47:27 + (Sat, 12 Aug 2017)
New Revision: 54659
Modified:
data/dsa-needed.txt
Log:
add zendframework to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-12 00:44:54
Author: jmm
Date: 2017-08-12 00:44:54 + (Sat, 12 Aug 2017)
New Revision: 54658
Modified:
data/dsa-needed.txt
Log:
add qemu/jessie to dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-12 00:37:14
Author: carnil
Date: 2017-08-12 05:47:05 + (Sat, 12 Aug 2017)
New Revision: 54666
Modified:
data/dsa-needed.txt
Log:
Take libgd2
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-12 04:59:24 UTC (rev 54665)
Author: roberto
Date: 2017-08-12 04:59:24 + (Sat, 12 Aug 2017)
New Revision: 54665
Modified:
data/CVE/list
Log:
Note that CVE-2017-12434 does not affect imagemagick in wheezy
Modified: data/CVE/list
===
--- data/CVE/list
Author: seb
Date: 2017-08-11 15:19:30 + (Fri, 11 Aug 2017)
New Revision: 54623
Modified:
data/dsa-needed.txt
Log:
Take mercurial from dsa-needed
Modified: data/dsa-needed.txt
===
--- data/dsa-needed.txt 2017-08-11 14:37:41
Author: carnil
Date: 2017-08-11 14:25:46 + (Fri, 11 Aug 2017)
New Revision: 54620
Modified:
doc/security-team.d.o/security_tracker
Log:
Fix typo: This -> These
Modified: doc/security-team.d.o/security_tracker
===
---
Author: seb
Date: 2017-08-11 14:27:52 + (Fri, 11 Aug 2017)
New Revision: 54621
Modified:
doc/security-team.d.o/security_tracker
Log:
Document ignored & postponed sub-states a bit more
Modified: doc/security-team.d.o/security_tracker
Author: jmm
Date: 2017-08-11 14:37:41 + (Fri, 11 Aug 2017)
New Revision: 54622
Modified:
data/CVE/list
Log:
ruby-passenger no-dsa, remove n/a entryy for wheezy, it's clearly affected
mark arc as ignored
Modified: data/CVE/list
71 matches
Mail list logo