[Bug 1882889] Re: Update vulnerable radare2 on 16.04, 18.04, 19.10

2020-07-20 Thread XVilka
See also https://bugs.launchpad.net/ubuntu/+source/radare2/+bug/1888338

Versions of radare2 below 4.5.0 affected by CVE-2020-15121
vulnerability:

- https://nvd.nist.gov/vuln/detail/CVE-2020-15121
- https://github.com/radareorg/radare2/security/advisories/GHSA-r552-vp94-9358

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-15121

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1882889

Title:
  Update vulnerable radare2 on 16.04, 18.04, 19.10

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/radare2/+bug/1882889/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1883852] [NEW] Update vulnerable OCaml on 16.04 LTS, 18.04 LTS, 19.10

2020-06-17 Thread XVilka
Public bug reported:

OCaml prior to 4.05 is vulnerable to:

CVE-2015-8869 2016-06-13T19:59Z 2018-10-30T16:27Z   
CVE-2017-9772 2017-06-23T20:29Z 2019-10-03T00:03Z   
CVE-2017-9779 2017-09-07T14:29Z 2019-10-03T00:03Z


OCaml prior to 4.07 is vulnerable to:
CVE-2018-9838 2018-04-06T18:29Z 2018-05-15T18:25Z

** Affects: ocaml (Ubuntu)
 Importance: Undecided
 Status: New

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2015-8869

** Also affects: ocaml (Ubuntu)
   Importance: Undecided
   Status: New

** No longer affects: radare2 (Ubuntu)

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9772

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9779

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-9838

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1883852

Title:
  Update vulnerable OCaml on 16.04 LTS, 18.04 LTS, 19.10

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ocaml/+bug/1883852/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1882889] Re: Update vulnerable radare2 on 16.04, 18.04, 19.10

2020-06-12 Thread XVilka
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-7854

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-7946

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9520

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9761

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9762

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9763

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-9949

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-10929

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-15368

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-15385

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-15931

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-15932

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-16357

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-16358

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-16359

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-16805

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-8808

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-8809

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-8810

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-10186

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-10187

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11375

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11376

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11377

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11378

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11379

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11380

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11381

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11382

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11383

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11384

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-12320

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-12321

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-12322

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-14015

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-14016

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-14017

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-15834

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-19842

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-19843

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20455

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20456

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20457

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20458

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20459

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20460

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20461

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-12790

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-12802

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-12829

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-12865

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-14745

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-16718

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-19590

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-19647

** Changed in: radare2 (Ubuntu)
   Status: New => Confirmed

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1882889

Title:
  Update vulnerable radare2 on 16.04, 18.04, 19.10

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/radare2/+bug/1882889/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1882889] Re: Update vulnerable radare2 on 16.04, 18.04, 19.10

2020-06-12 Thread XVilka
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6194

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6197

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6319

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6387

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6415

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-6448

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-7274

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2017-7716

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1882889

Title:
  Update vulnerable radare2 on 16.04, 18.04, 19.10

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/radare2/+bug/1882889/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1882889] [NEW] Update vulnerable radare2 on 16.04, 18.04, 19.10

2020-06-09 Thread XVilka
Public bug reported:

Ubuntu 16.04 ships radare2-0.9.6 version that is vulnerable to:

CVE-2017-6194 2017-04-03T05:59Z 2017-04-10T22:09Z   
CVE-2017-6197 2017-02-24T04:59Z 2017-03-02T02:59Z   
CVE-2017-6319 2017-03-02T01:59Z 2017-03-04T02:59Z   
CVE-2017-6387 2017-03-02T01:59Z 2017-03-04T02:59Z   
CVE-2017-6415 2017-03-02T01:59Z 2017-03-04T02:59Z   
CVE-2017-6448 2017-04-03T05:59Z 2017-04-10T21:37Z   
CVE-2017-7274 2017-03-27T17:59Z 2017-03-31T12:31Z   
CVE-2017-7716 2017-04-12T15:59Z 2019-10-03T00:03Z   
CVE-2017-7854 2017-04-13T16:59Z 2019-10-03T00:03Z   
CVE-2017-7946 2017-04-18T20:59Z 2017-04-21T15:22Z   
CVE-2017-9520 2017-06-08T14:29Z 2017-06-27T14:57Z   
CVE-2017-9761 2017-06-19T16:29Z 2017-06-27T14:49Z   
CVE-2017-9762 2017-06-19T16:29Z 2017-06-27T14:50Z   
CVE-2017-9763 2017-06-19T16:29Z 2017-07-05T17:54Z   
CVE-2017-9949 2017-06-26T20:29Z 2019-10-03T00:03Z   
CVE-2017-10929 2017-07-05T12:29Z 2017-07-19T16:32Z  
CVE-2017-15368 2017-10-16T01:29Z 2019-10-03T00:03Z  
CVE-2017-15385 2017-10-16T22:29Z 2017-10-27T14:49Z  
CVE-2017-15931 2017-10-27T18:29Z 2017-11-02T01:29Z  
CVE-2017-15932 2017-10-27T18:29Z 2017-11-02T01:29Z  
CVE-2017-16357 2017-11-01T17:29Z 2017-11-13T16:27Z  
CVE-2017-16358 2017-11-01T17:29Z 2017-11-13T16:26Z  
CVE-2017-16359 2017-11-01T17:29Z 2017-11-13T16:25Z  
CVE-2017-16805 2017-11-13T21:29Z 2017-11-29T14:43Z

CVE-2018-8808 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-8809 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-8810 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-10186 2018-04-17T20:29Z 2019-10-03T00:03Z  
CVE-2018-10187 2018-04-17T20:29Z 2019-10-03T00:03Z  
CVE-2018-11375 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11376 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11377 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11378 2018-05-22T19:29Z 2018-06-28T14:45Z  
CVE-2018-11379 2018-05-22T19:29Z 2018-06-27T15:30Z  
CVE-2018-11380 2018-05-22T19:29Z 2018-06-27T17:17Z  
CVE-2018-11381 2018-05-22T19:29Z 2018-06-27T15:18Z  
CVE-2018-11382 2018-05-22T19:29Z 2018-06-27T15:17Z  
CVE-2018-11383 2018-05-22T19:29Z 2018-06-27T15:30Z  
CVE-2018-11384 2018-05-22T19:29Z 2018-06-27T15:18Z  
CVE-2018-12320 2018-06-13T16:29Z 2018-08-02T12:55Z  
CVE-2018-12321 2018-06-13T16:29Z 2018-08-02T13:06Z  
CVE-2018-12322 2018-06-13T16:29Z 2018-08-02T15:05Z  
CVE-2018-14015 2018-07-12T20:29Z 2018-09-06T15:16Z  
CVE-2018-14016 2018-07-12T20:29Z 2019-10-03T00:03Z  
CVE-2018-14017 2018-07-12T20:29Z 2019-10-03T00:03Z  
CVE-2018-15834 2018-09-12T16:29Z 2018-11-19T16:53Z  
CVE-2018-19842 2018-12-04T09:29Z 2018-12-31T14:22Z  
CVE-2018-19843 2018-12-04T09:29Z 2018-12-31T14:21Z  
CVE-2018-20455 2018-12-25T19:29Z 2018-12-31T14:19Z  
CVE-2018-20456 2018-12-25T19:29Z 2018-12-31T14:15Z  
CVE-2018-20457 2018-12-25T19:29Z 2019-01-09T14:14Z  
CVE-2018-20458 2018-12-25T19:29Z 2018-12-31T14:15Z  
CVE-2018-20459 2018-12-25T19:29Z 2019-01-09T14:14Z  
CVE-2018-20460 2018-12-25T19:29Z 2018-12-31T13:11Z  
CVE-2018-20461 2018-12-25T19:29Z 2018-12-31T14:15Z

CVE-2019-12790 2019-06-10T19:29Z 2019-07-16T05:15Z  
CVE-2019-12802 2019-06-13T21:29Z 2019-07-16T05:15Z  
CVE-2019-12829 2019-06-15T17:29Z 2019-06-17T16:13Z  
CVE-2019-12865 2019-06-17T23:15Z 2019-07-30T03:15Z  
CVE-2019-14745 2019-08-07T15:15Z 2019-10-08T03:15Z  
CVE-2019-16718 2019-09-23T14:15Z 2019-09-23T18:22Z  
CVE-2019-19590 2019-12-05T02:15Z 2020-02-14T03:15Z  
CVE-2019-19647 2019-12-09T01:15Z 2020-02-14T03:15Z  


Ubuntu 18.04 ships radare2-2.3.0 version that is vulnerable to:

CVE-2018-8808 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-8809 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-8810 2018-03-20T05:29Z 2019-10-03T00:03Z   
CVE-2018-10186 2018-04-17T20:29Z 2019-10-03T00:03Z  
CVE-2018-10187 2018-04-17T20:29Z 2019-10-03T00:03Z  
CVE-2018-11375 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11376 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11377 2018-05-22T19:29Z 2018-06-27T17:52Z  
CVE-2018-11378 2018-05-22T19:29Z 2018-06-28T14:45Z  
CVE-2018-11379 2018-05-22T19:29Z 2018-06-27T15:30Z  
CVE-2018-11380 2018-05-22T19:29Z 2018-06-27T17:17Z  
CVE-2018-11381 2018-05-22T19:29Z 2018-06-27T15:18Z  
CVE-2018-11382 2018-05-22T19:29Z 2018-06-27T15:17Z  
CVE-2018-11383 2018-05-22T19:29Z 2018-06-27T15:30Z  
CVE-2018-11384 2018-05-22T19:29Z 2018-06-27T15:18Z  
CVE-2018-12320 2018-06-13T16:29Z 2018-08-02T12:55Z  
CVE-2018-12321 2018-06-13T16:29Z 2018-08-02T13:06Z  
CVE-2018-12322 2018-06-13T16:29Z 2018-08-02T15:05Z  
CVE-2018-14015 2018-07-12T20:29Z 2018-09-06T15:16Z  
CVE-2018-14016 2018-07-12T20:29Z 2019-10-03T00:03Z  
CVE-2018-14017 2018-07-12T20:29Z 2019-10-03T00:03Z  
CVE-2018-15834 2018-09-12T16:29Z 2018-11-19T16:53Z