August 2018 Archives by subject
Starting: Wed Aug 1 03:51:21 BST 2018
Ending: Fri Aug 31 23:06:36 BST 2018
Messages: 755
- [Git][security-tracker-team/security-tracker][master] "new" apache issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add commit reference for CVE-2018-1000222
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add fixed version for CVE-2018-14016/radare2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add fixed version for CVE-2018-5953
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add intel-microcode to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add some descriptions
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add trailer (for consistency only)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: bin/gen-DSA: Fix package removal from the needed_file. Don't remove packages…
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: bin/gen-DSA: Use $needed_file.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: bug created for twitter-bootstrap3
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] 2 commits: claim dojo
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] 2 commits: Claim otrs2 in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2015-9265 rejected in favour of CVE-2018-14622
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-1000088/ruby-doorkeeper fixed already, but not closed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-1999024,mathjax: Minor issue, no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Re-claim phpldapadmin.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage libgd2 for jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage python-django
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: Fix print statements for Python 3.6 compatibility
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: follow security team with no-dsa for CVE-2018-3847
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: mark libspring-security-2.0-java as not-affected in jessie
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] 2 commits: move note about openssh in jessie to dla-needed.txt
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] 2 commits: new gitlab issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Put notes below packages
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: remove intel-microcode from dla-needed.txt. updates for recent CVEs…
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] 2 commits: Revert "bin/gen-DSA: Fix package removal from the needed_file. Don't remove…
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: Triage CVE-2018-15869 (awscli) in jessie LTS (vulnerable code not present)
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add CVE-2018-1000217/cjson
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add libtirpc to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2018-13054/cinnamon fixed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Update status for CVE-2018-10938
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 4 commits: follow security team with no-dsa for CVE-2018-13988
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Ad CVE-2018-5740/bind9
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add and take ghostscript to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add and take openssh (CVE-2018-15473)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add another 389-ds-base issue fixed via experimental (CVE-2018-10871)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add another CVE to DLA-1466-1
Ben Hutchings
- [Git][security-tracker-team/security-tracker][master] Add bind9 to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add bug# for CVE-2015-9262/libxcursor.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2017-9814
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000222/libgd2, #906886
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000223/soundtouch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000654
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10916/lftp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10920/knot-resolver, #905325
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10932
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10935/389-ds-base
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11771
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12108
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12584
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1404{4,5}/soundtouch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14526/wpa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14574/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14622/libtirpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14912/cgit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-14938/tcpflow, #905483
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15209/tiff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15494/dojo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15599/dropbear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15727/grafana
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15746/qemu: #907500
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-15919/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-16062/elfutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-16140/fig2dev
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-3774/node-url-parse
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-5740/bind9: #905743
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-6556
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-6558
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-8032/axis, #905328
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for libykneomgr issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for openssh issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for rustc issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for three ocsinventory-server issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for wordpress issue for tracking
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug references for spice and spice-gtk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add cgit to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add clarification references for CVE-2018-1462{1,2}/libtirpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commit reference for CVE-2011-2765
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commits for CVE-2018-14424
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2011-2767/libapache2-mod-perl2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2015-5243 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2015-9265/libtirpc (which is potentially just a duplicate of CVE-2018-14622)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-9118/php*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-9120/php*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-0501/apt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000222/libgd2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000223/soundtouch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000652/jabref
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000654/libtasn1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000656/flask
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000657/rustc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10844/gnutls
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10845/gnutls
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10846/gnutls
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10873/{spice,spice-gtk}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10902/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVe-2018-10915/postgresql
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10916/lftp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10920/knot-resolver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10925/postgresql
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10931
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10935/389-ds-base
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11758 as NFU (Apache Cayenne)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11769/couchdb
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11770, NFU (Apache Spark)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11771/libcommons-compress-java
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11776
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12911/webkit2gtk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-13055/mantis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14028/wordpress
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14348/libcgroup
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14400/pycparser
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14424/gdm3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14504/mantis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14526/wpa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14574/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14593/otrs2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14598/libx11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14599/libx11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14600/libx11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVe-2018-14619/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14621/libtirpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14622/libtirpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14624/389-ds-base
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14625/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14722/btrfsmaintenance
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1477{3,4}/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14851/php
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14876/flifAdd CVE-2018-14876/flifAdd CVE-2018-14876/flif
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14883/php*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14884/php
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-148{49,50}/tikiwiki
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14912/cgit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14938/tcpflow
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15120/pango1.0
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15209/tiff, kept todo for now
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15494/dojo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15501/libgit2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15560/pycryptodome
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15572/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15594/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15599/dropbear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15605/phpmyadmin
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15607/imagemagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15685/electron, itp'ed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15727/grafana
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15746/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15908/ghostscript
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15909/ghostscript
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15910
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-15919/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16056/wireshark
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16057/wireshark
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16058/wireshark
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16062/elfutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16140/fig2dev
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16276/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3081 for DLA-1407-1/mariadb
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3847/cfitsio
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5390/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5391
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5392/mingw-w64
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6556/lxc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6558/fscrypt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-7685/libzypp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8006/activemq
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8028
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8032/axis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-9262/libxcursor
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-9363/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVEs for jenkins issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add DLA-1464-1 postgresql-9.4 - security update
Christoph Berg
- [Git][security-tracker-team/security-tracker][master] Add DSA-4259-1/ruby2.3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add DSA number for regression update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add entries for clamav update proposed via stetch-{pu,updates}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add explicity entry for jessie until CVE assigned for xml-security-c issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for (unimportant) CVE-2018-12040/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for confuse issue via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-15010
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-15139/cinder via experimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-16042/node-growl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-010860/libarchive-zip-perl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1000539/ruby-json-jwt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10916/lftp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10920/knot-resolver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10932/lldpad
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-11771 via new upstream version upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-14017/radare2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-14348/libcgroup
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-14526/wpa in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-14619 (fixed in 4.14.8 upstream)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1477{3,4}/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-15572
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed versio nfor CVE-2018-15599/dropbear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-16140/fig2dev
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-5740/bind9
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-6556/lxc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for four linux CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for fscrypt in unstable upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed versions for some linux CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add foreshadow vulns
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Add four entries for libraw
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add four missing CVEs which were ommited while copy-pasting the original list…
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add four new CVEs for mariadb-10.1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add further reference for CVE-2018-15746/qemu for the initial report
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add ghostscript to dla-needed.txt and claim it.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] add gnutls28 to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add information for CVE-2018-3646
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add information that cacti and zoneminder embed csrf-magic library
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add initial information for two linux issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add issue reference for CVE-2018-12648
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add kamailio
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add libextractor and PHP to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add libextractor to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add links to debian-lts post archives
Brian May
- [Git][security-tracker-team/security-tracker][master] Add link to commit fixing CVE-2018-15473 in portable OpenSSH
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add mariadb-10.0 to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add mariadb-10.0 to four CVEs, 10.0.36 adresses those
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add mitigation information for CVE-2018-5391
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add more information about the gnutls vulnerabilities.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] add more packages
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Add new CVEs for webkit2gtk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new samba issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add nodejs upstream fixes
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add note + no-dsa for IKEv1 PSK brute-force
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Add note for CVE-2013-7464/csrf-magic
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for kamailio update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for libextractor
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for libspring-security-2.0-java
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Add note for mariadb-10.1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note on CVE-2017-7893
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note on CVE-2018-3690
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note on second batch of microcode fixes
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add note to twig in dla-needed.txt
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Add ocsinventory-server CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add once ancient curl issue (CVE-2003-1605)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add one more CVE for mariadb-10.1 as fixed (upstream in 10.1.33)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add openssh to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add postgresql-9.6 to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2017-1000246
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-10846
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-10920
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-3620
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for rationale on scope of CVE-2016-10127
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add reference for xen netback issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-10932/lldpad
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-14404
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-14767/kamailio
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-6558
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references to commit for CVE-2018-6556/lxc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references to commits for CVE-2018-5740/bind9
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference to debian-lts post for tiff in dla-needed.txt
Brian May
- [Git][security-tracker-team/security-tracker][master] Add reference to fix for CVE-2018-8032/axis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference to fixing commit for CVE-2018-14884
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference to upstream versions fixing the issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add reference to vbox issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add reference to XSA-273
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reported bug reference for CVE-2018-5390
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add ruby-json-jwt to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add second bug reference for CVE-2018-11243/upx-ucl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add source package information for CVE-2018-6557
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add spice and spice-gtk to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add squirrelmail to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add src:linux for CVE-2018-112{8,9} for kernel side of ceph issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add stretch-pu update for libtirpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add symfony to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add tcpflow to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add temporary entry for charybdis issue, #906879
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add temporary entry for ghostscript issues for -dSAFER sanbox bypasses
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add temporary item for XSA-272
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add thunderbird
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add thunderbird to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add tracking for CVE-2018-15132
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two cobbler issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two hdf5 issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two open-build-service issues, not yet further checked
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add updated fix for CVE-2018-14015
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream reference for CVE-2017-7475
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add URL to PoC for CVE-2018-15473 (openssh)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add workaround entry for incomplete fix for CVE-2018-10886
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add xen entries as well for the non-yet-CVEified issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add xml-security-c issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add zutils issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust CVE identifier
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust fixed version for CVE-2018-4246
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust no-dsa reasoning for CVE-2018-15746
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust source package name
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Annotate CVE-2018-14884 as not affecting php5 in jessie
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Assign DLA-1481-1 to linux-4.9
Ben Hutchings
- [Git][security-tracker-team/security-tracker][master] Associate CVE-2018-14400 to ply and after turnaround with MITRE track with unimportant severity
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] ATS, ruby-json-jwt DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] bind postponed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] btrfsmaintenance bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] btrfsmaintenance fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Bump package version and add another CVE ID for DLA-1466-1
Ben Hutchings
- [Git][security-tracker-team/security-tracker][master] cgit fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] charybdis issue #906879 fixed in unstable via new upstream release (4.1.1)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] charybdis issue is 4.x only and the patch is incomplete, according to upstream
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] claim a few DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] claim bind9
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim confuse
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Claim gdm3 in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim git-annex in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim gnutls.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] claim intel-microcode in dla-needed.txt
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Claim libcgroup in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] claim libtirpc
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Claim libx11 in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] claim mariadb-10.0
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Claim openssh in dla-needed.txt
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Claim ruby-zip in dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] claim ruby in LTS next
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] claim sam2p
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] claim samba
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] claim some LTS packages
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Claim squirrelmail in dla-needed.txt
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Claim tomcat-native in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] claim two packages
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Claim wpa in dla-needed.txt
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] Claim xml-security-c in dla-needed.txt
Ferenc Wágner
- [Git][security-tracker-team/security-tracker][master] Clarify annotation of CVE-2018-14884/php5
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] confuse got a DLA, remove no-dsa entry
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Correct entry for CVE-2018-15192
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Correct triaging for CVE-2018-14621
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] curl issue is fixed in sid
Alessandro Ghedini
- [Git][security-tracker-team/security-tracker][master] CVE-2015-9261: Add missing upstream commit that addresses a regression
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVe-2016-9140 finally REJECTED by its CNA as not beeing a security issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2017-1000433/python-pysaml2 fixed in exerimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2017-15139,cinder: Jessie is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000215/cjson fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000223,soundtouch: no-dsa for Jessie. Follow Stretch.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000544,ruby-zip: Fixed in unstable
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000637 assigned for zutils issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000654,libtasn1-6: no-dsa for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1080/dogtag-pki fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10850/389-ds-base fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10871/389-ds-base fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10910,bluez: Minor issue, no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10915,postgresql-9.1: no-dsa for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10915; Add note on fixed versions
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10935/389-ds-base fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10936,libpgjava: no-dsa for Jessie, minor issue
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10936 is fixed in libpgjava 42.2.5
Christoph Berg
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12016/epiphany-browser fixed in unstable
Jeremy Bicha
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12932,CVE-2018-12931,wine: Mark issues as postponed for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14015/radare2 was fixed in unstable via 2.8.0+dfsg-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14028,wordpress: postponed, can be fixed with a later update
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14424/gdm3 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14432/keystone fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14446,mp4v2: Mark as no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14447,confuse: Mark as no-dsa for Jessie. Minor issue.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-14574/python-django fixed in unstable via new upstream version
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-147{79,80}/yubic-piv-tool fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1495{0..5}/squirrelmail assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15471/linux assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15473/openssh assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15473 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15889,libpodofo: no-dsa for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15911/ghostscript further assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15919: tag it no-dsa in jessie
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] CVE-2018-16062,elfutils: no-dsa for Jessie, follow Stretch
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1999023,wesnoth-1.10: Games are not supported in Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-2767/mariadb-10.1 fixed in 1:10.1.34-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-3081 was adressed as well in mariadb
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-3728/node-hoek fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-8360 need checking. thanks carnil for pointing this out
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-9275/yubico-pam fixed via new upstream version in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVEs assigned for XSA 269, 268 and 272
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add note for libextractor.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add some dates/attributions to notes.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add some missing dates/attributions.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim libextractor.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim libxcursor.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim openssh.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim spice and spice-gtk.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage cgit
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage dojo
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage gnutls28
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage libmspack
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Update note for libxcursor.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt remove clamav entry
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Decouple open ghostscript issue from #907332: #907703
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Demote severity for fig2dev to unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] discount issues are fixed in sid
Alessandro Ghedini
- [Git][security-tracker-team/security-tracker][master] django DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] dla-needed.txt: add temporary note on clamav
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Drop references of CVE-2018-9154, was a duplicate of CVE-2017-13745
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Expand description
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Expand note for CVE-2017-7893
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Expand note for CVE-2018-2767
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Five samba issues fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix reference for CVE-2018-15599
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] fix typo in note
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Fix version for CVE-2018-12422 with first version in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] follow security team with CVE-2018-14568 for jessie
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Four CVEs fixed for mariadb-10.1 in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Four CVEs have been rejected by the assigning CNA for tiff issues not beeing a security issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Give back gdm3 in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Give back git-annex in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] glassfish n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] graphicsmagick/CVE-2018-6799 add links to upstream bugs
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] intel-microcode, xen, keystone DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] jetty9 DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libarchive issue fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] libcgroup bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libcgroup no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libcgroup spu
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libgd no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libpgjava no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libreoffice n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libxcursor no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libxkbcommon issues fixed in unstable by uploading 0.8.2 version
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] libykneomgr is no-dsa in Jessie. Minor issue
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Linux issue n/a for released suites
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] List CVE-2018-2767 for DLA-1407-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] LTS/Add and claim php5
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS/Add and claim tomcat8
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS: claim gdm3 next
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] LTS: give up on spice, too hard and no clear upstream fix, claim git-annex
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-12614 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-2654 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mark CVE-2018-10874 as not-affected for jessie
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] mark CVE-2018-10875 as no-dsa for jessie
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-10884 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-10916 as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-12422 fixed for evolution-data-server
Jeremy Bicha
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-14447/confuse as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-14526/wpa as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-14622/libtirpc as no-dsa, minor issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-14938 (tcpflow) as no-dsa in jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-15599 as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-15746/qemu as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-15919/openssh as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-16062/elfutils as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-16132 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-3690 as REJECTED
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-5392/mingw-w64 as unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-8006/activemq as unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-8041
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mark efail as unimportant for evolution
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Mark mariadb-10.2 as removed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark open libxkbcommon issues as no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] mark php issue as windows-specific
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] mark tiff n/a in jessie as we can't reproduce
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Mark two jetty issues as ignored
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Mark XSA-270 as not-affected for linux in jessie
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Match wine and wine-development for CVE-2018-12932 & CVE-2018-12933 in jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] new ATS issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new awscli issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new cinder issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new dom4j issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new ffmpeg issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new kfreebsd issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new libxkbcommon issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new libykneomgr issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new linux issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new linux issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new linux issue/xen
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new lldpad issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new ming issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] New node-url-parse issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new nodejs issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new ocsinventory issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new openssh issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new pkgconf issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new podofo issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new webkit issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new xen issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new xen issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new yubico-piv-tool issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU from external check
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] nmap non-issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Older lftp issues fixed 3.5.9 upstream (and 3.5.9-1 in unstable)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] One 389-ds-base issue fixed via experimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] only use unimportant, no need for no-dsa
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] openjdk-8, postgresql-9.6 DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] openjdk-8 fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] openjfx bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] openssh in jessie: ignore CVE-2016-8858, postpone the remaining issues
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] pango1.0 in jessie does not have emoji support.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Process more NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process several NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] puppet n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Readd openssh to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] record ATS fixes
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Record fixed version for several mysql-5.7 CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Record fixes for wireshark via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Record stretch-pu proposed update for libxcursor
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference fixes for CVE-2017-1755{4,5}/aubio
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2017-14501 /libarchive
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2018-15599/dropbear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference proposed update for dropbear via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream advisory for xml-security-c issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference zutils bug which is used to identify the heap-based buffer overflow issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] remove ansible from dla-needed.txt for now
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Remove CVE-2017-16545 entry, which was already fixed in 1.3.20-3+deb8u3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] remove duplicated openssh entry
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Remove jessie-tagged entry, update is already pending
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove linux-4.9 entry for CVE-2018-13405
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove no-dsa/postponed entry for CVE-2017-12794/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove no-dsa entry as an upload was planned via DLA-1461-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove no-dsa tagged entry
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove no-dsa tagged entry for now, seccomp support already enabled earlier
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove space in description
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove TODO for CVE-2018-15209
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove todo item for CVE-2018-558213
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove trailing brackets
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove two hdf5 enties which were duplicate assignments and rejected
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove wine and wine-development from dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Remove wpa from dla-needed.txt since DLA has already been assigned
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1437-2 for slurm-llnl
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1445-2 for busybox
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1445-3 for busybox
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1455-1 for mutt
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1456-1 for graphicsmagick
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1457-1 for ant
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1458-1 for xml-security-c
Ferenc Wágner
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1459-1 for cgit
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1460-1 for libmspack
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1461-1 for wpa
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1463-1 for clamav
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1463-1 for sam2p
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1465-1 for blender
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1466-1 for linux-4.9
Ben Hutchings
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1467-1 for ruby-zip
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1468-1 for fuse
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1469-1 for libxcursor
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1470-1 for confuse
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1471-1 for kamailio
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1472-1 for libcgroup
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1473-1 for otrs2
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1474-1 for openssh
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1475-1 for tomcat-native
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1476-1 for dropbear
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1477-1 for libgit2
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1478-1 for libextractor
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1480-1 for ruby2.1
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1482-1 for libx11
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1483-1 for 389-ds-base
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1484-1 for squirrelmail
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1485-1 for bind9
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1486-1 for libtirpc
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1488-1 for mariadb-10.0
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1489-1 for spice-gtk
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4276-1 for php-horde-image (CVE-2017-9773, CVE-2017-9774, CVE-2017-14650)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4280-1 for openssh (CVE-2018-15473)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4281-1 for tomcat8 (CVE-2018-1304, CVE-2018-1305, CVE-2018-1336,…
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Reserve DSA for kamailio
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for cgit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for gdm3 update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for libmspack
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for linux DSA
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for linux update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for mutt update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for samba
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Restore one entry
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] review-update-needed: also show, when verbose, how many packages are claimed per person
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] ruby DSA released
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] small note about BCBS
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Some CVEs were rejected as reservation duplicates
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Sort entries per source package
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Start tracking CVE-2018-7754
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Sync fixed version for CVE-2018-9465
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Sync URL format with as used for kernel-team patch references
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] take django
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Take kamailio from dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Take libmspack from dsa-needed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Take linux from dsa-needed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Take php-horde-image (CVE-2017-9773, CVE-2017-9773, CVE-2017-14650)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] take syntastic
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Take twitter-bootstrap
Brian May
- [Git][security-tracker-team/security-tracker][master] take xml-security-c
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] there is no CVE open for evolution
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] three Java issues n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Three libx11 issues fixed via new upstream version upload to unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixes for ghostscript issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track further security fix for ghostscript, more pending
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Track proposed fix for CVE-2018-14526/wpa for stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track proposed fix fo yubico-piv-tool via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track proposed update for confuse via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] track signal desktop RFP
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Track thunderbird fixes
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-0360 and CVE-2018-0361 (clamav) for jessie LTS
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-1000222 (libgd2) for jessie LTS (see #906886).
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-11772 (libcommons-compress-java) for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-14526 (wpa) for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-14551 (imagemagick) for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-14574 for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-15599 (dropbear) for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-5816 (libraw) for jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] triage for bootstrap in jessie, probably same for all suites
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] try to tackle spice issues
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Two CVEs fixed for php7.1 in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Two CVEs for php7.0 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Two libgit2 issues fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Udpate information for cacti on CVE-2013-7464
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Unclaiming twitter-bootstrap
Brian May
- [Git][security-tracker-team/security-tracker][master] Update commit reference for CVE-2018-14017
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2013-7464/zoneminder
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2016-2779/util-linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2016-4975 according to Stefan Fritsch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update notes for CVE-2017-7893
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update reference for CVE-2015-8985/glibc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update reference for CVE-2018-7755
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Updates for intel-microcode
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2018-11407/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2018-1246{6,7}/open-build-service
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2018-14400
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2018-14505 (mitmproxy)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2018-5390/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for kamailio
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for pkgconf
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status information for CVE-2015-9253
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status on liblnk issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update the DLA number for wpa - DLA-1461-1 is now free
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] Update tomcat8 status
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Update version information on CVE-2016-0782/activemq
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] use DLA-1461-1 for clamav instead of DLA-1463-1
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Various CVEs fixed in mariadb-10.1 1:10.1.34-1 via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] vcftools fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] vim-syntastic, symfony DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] vuze removed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] wheezy was the last release shipping tiff3
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] wordpress fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] wrong link, but where is the correct one?
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] xkbcommon no-dsa/bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] xml-security-c DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] zutils, soundtouch no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] zutils issue: no-dsa for Jessie, minor issue.
Markus Koschany
Last message date:
Fri Aug 31 23:06:36 BST 2018
Archived on: Fri Aug 31 23:06:38 BST 2018
This archive was generated by
Pipermail 0.09 (Mailman edition).