June 2018 Archives by date
Starting: Fri Jun 1 01:20:20 BST 2018
Ending: Sat Jun 30 23:45:01 BST 2018
Messages: 759
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1392-1 for linux
Ben Hutchings
- [Git][security-tracker-team/security-tracker][master] Remove two postponed entries
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add prosody
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10995/slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2015-9235 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10847/prosody
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-10555 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add missing "quasi-blame" to comment.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-10578 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-10659 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1084{8,9} as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commits for CVE-2018-10995/slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10995/slurm-llnl: #900548
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-6412
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] "new" ghostscript issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Pin point fixing version in unstable for ghostscript issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DLA ID for wheezy-lts EOL
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim memcached in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 3 commits: bin/lts-missing-uploads.py: Update for new LTS distribution.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Fix targets to be run to have minimal example started
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-11645/ghostscript assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] distributions.json: Add bookworm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add comment for the releases list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Update comment for stretch.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Disable fetching of wheezy packages
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- Processing 894f99828a9822f9b126a46ca56f2f697db7c2d2 failed
security tracker role
- Processing 139997aea97df799c0969beb1ce28053c364b72e failed
security tracker role
- [Git][security-tracker-team/security-tracker][master] These packages have been removed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Sync list of removed packages from the archive
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] zookeeper DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11656/imagemagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11656 as unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11655/imagemagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11577/liblouis as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11577
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11652/nikto
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11652/nikto
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1089/389-ds-base, #898138
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-3745 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11627/ruby-sinatra
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process CVE-2018-1165{0,1}/greylog2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11646/webkit2gtk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add thunderbird to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2016-1000338/bouncycastle
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Process more NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-11652/nikto
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4215-1 for batik (CVE-2017-5662, CVE-2018-8013)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add link to oss-sec post for CVE-2018-8013
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add and take jruby in dsa-needed
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for prosody update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Take redmine for regression update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] webkit unimportant
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] unclaim enigmail
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Remove trailing whitespace.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Add DSA number for redmine regression update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add memcached to dsa-needed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Memcached security updates send to the security team.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add myself to lts-frontdesk.2018.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim libvncserver in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim bouncycastle in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Cleanup entries to be included in DSA
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: timidity embeds libmikmod
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixed version via experimental for gitlab
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2017-18267/poppler, #898357, until uploaded to unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] bc no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] wireshark DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: lrzip no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add bug reference for wireshark
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1067/undertow
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Futher research CVE-2018-1067/undertow: Fixed in 1.4.25-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: new bfgminer/cgminer issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] dojo fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update fixing versions for CVE-2017-13216
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add three new liblouis CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] strongswan fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libsass no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] burp n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add myself for strongswan DSA
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Update information for liblouis issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bouncycastle CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update status for CVE-2016-1000340 in jessie
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11713
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11712/webkit2gtk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11710/libopenmpt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add "new" CVEs for bouncycastle
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] intel-microcode updates proposed for {stretch,jessie}-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process more NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] claim a last git update for wheezy
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] CVE-2016-3977 was made reopened by a NMU 5.1.4-0.4
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove additional space
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-3977 as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing version for CVE-2016-3977/giflib
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs (various nodejs modules)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000180/bouncycastle
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11743/mruby
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1000180
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new sleuthkit issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11743/mruby
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] one glibc issue turned out to be a non-issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add new perl issue (directory traversal in Archive::Tar)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add libvncserver to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16042/node-growl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for node-growl, #900868
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-765{3,4}/mosquitto
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-0496/freedink-dfarc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for memcached update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commit for CVE-2018-10840
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Cleanup whitespaces
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Record fix for CVE-2018-11412
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2018-0496
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two giflib issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process four IBM specific NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update CVE-2018-9060
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update CVE-2018-3617
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] cgminer/ bfgminer no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-9246/libpgobject-util-dbadmin-perl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1136{4,5}/r-cran-haven fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for bfgminer issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for cgminer
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Record comits for libpgobject-util-dbadmin-perl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing version for CVE-2018-10995/slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10198/otrs2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11806/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10850/389-ds-base
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1002204
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1002202
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1002201 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1002200/plexus-archiver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] otrs n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new chromium issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add plexus-archiver to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-1002200/plexus-archiver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE assigned for perl issue: CVE-2108-12015
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] plexus-archiver fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-5814/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add entry for bird, #900967
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] point to my mercurial proposed update in dsa-needed
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] remove mention of wheezy from dla-needed, we track LTS, regardless of name
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] unclaim git, hanled by elts in wheezy
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Add reference to fixing commit for bird issue, #900967
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: various no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] CVE-2018-946 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream bug for CVE-2018-12015
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add announce for CVE-2018-9246
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11806/qemu: #901017
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12016/epiphany-browser
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12016
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add perl to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4219-1 for jruby (CVE-2018-1000073, CVE-2018-1000074,…
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Tag remaining jruby issues in jessie as end-of-life (see DSA-4219-1)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] bird no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add new mercurial issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add mercurial entries for at least three of the commits, 7 in total have (SEC) markings
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for mercurial issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mercurial fixed in sid
Julien Cristau
- [Git][security-tracker-team/security-tracker][master] add GnupG CVE
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] source package name is gnupg2
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Remove suite tagged entries
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-12020/gnupg2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVe-2018-12066/bird assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Associate CVE-2018-6126 as well with skia, itp'ed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reorder entry for CVE-2018-6126
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add firefox tracking for CVE-2018-6126
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add firefox-esr to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12020 tracking sources
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commit references for CVE-2018-12020
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000204
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] firefox DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for (legacy) gnupg1 source package
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] libvncserver DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] prepare DSA for gnupg*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12020/gnupg1 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3737
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-3737
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-3717
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSAs for gnupg* source packages
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] unclaim phpmyadmin
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-6514/facter
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-9234
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commit reference for CVE-2018-12015
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12015/perl fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixing version for CVE-2018-7225/libvncserver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2017-16539/docker.io fixed via unstable upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new javascript issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new qbs issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] node NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add upstream reference for CVE-2016-10539
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12085/liblouis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove CVE-2012-5844 entry
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12085/liblouis: #901202
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 12 commits: Simplify DLAFile
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update dokuwiki entry, update for CVE-2017-18123 proposed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream discussion for CVE-2017-1154{6,7,9}/timidity
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-6515 as not-affected
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] libidn: santiago proposed debdiff
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] 2 commits: new node-marked issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Expand information for plexus-archiver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Several mysql-5.7 CVEs fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track openjdk-7 fixes via experimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add s3ql issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Take plexus-archiver from dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: openjdk-7 DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16138/node-mime
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove some duplicate NOTE prefixes
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference commits for CVE-2017-16138
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add note for CVE-2017-16138
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-16136 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2016-10541/node-shell-quote
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12088/s3ql assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2017-15736/spip fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new matrix-synapse issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for matrix-synapse
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] chromium fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] s3ql ignored
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new jpeg9 issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new OBS issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-768{8,9}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] CVE-2018-11574: ppp
Luciano Bello
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference oss-advisory as there is not an upstream one (now)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10360/file
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new lepton issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12109/flif
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] add file to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-10360/file
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2011-4181/open-build-service
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for file in dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10360/file fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12085/liblouis fixed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference patches for ppp issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for perl update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2014-5220/mdadm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12099/grafana
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10853/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12228/asterisk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12227/asterisk
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new openssl issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reference upstream commits for openssl issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] also mark openssl1.0 as postponed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16138/node-mime fixed version in unstable
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] 2 commits: new webkit issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Remove file, agreed on severity and to be fixed via point release
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-10360/file as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12232/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12233/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] qemu postponed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add three new mruby issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA for plexus-archiver update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new chromium issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add new bind9 issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000180/bouncycastle
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixes for file via jessie-pu and stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10853: replace proposed patch with commited patch reference
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-0495/libgcrypt20
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] ruby-sanitize fixed in experimental
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add and take spip in dsa-needed
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-0495/libgcrypt20
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add information on CVE-2018-120{19,20}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12291/matrix-synapse assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream reference for CVE-2018-0495
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add libgcrypt20 to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add lame fixes via jessie-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove no-dsa entries for spip, will get a DSA
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-5738/bind9
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3665
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add intel advisory for CVE-2018-3665
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-5738/bind9
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Expand information for CVE-2018-5738
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix typo in description
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3665 information for src:linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Consider CVE-2018-3665 fixed once the default is enabled on all CPUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bouncycastle to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4228-1 for SPIP
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Reference CVE-2017-15736 for DSA-4228-1
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12040/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new radare2 issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add nodejs issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream issues for CVE-2018-1232{0,1,2}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-120{19,20}/enigmail
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] several nodejs n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1121{8,9}/redis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] allocate DSA for strongSwan
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Add new matrix-synapse issue, #901549
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-5738/bind9 issue fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12356/password-store
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing commit for CVE-2018-12356/password-store
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-122686/acccheck
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12268/acccheck
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: add bug for pass
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] webkit updates
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add reference from reporter for CVE-2018-12356
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12423 assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-12356
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark stretch and jessie as not affected for CVE-2018-12356
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2017-5854/libpodofo was not correctly fixed for stretch and wheezy
Mattia Rizzolo
- [Git][security-tracker-team/security-tracker][master] also link the bug in CVE-2018-5308/libpodofo
Mattia Rizzolo
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12440/boringssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12439/matrixssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12437/libtomcrypt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12436/wolfssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12435/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12434/libressl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Reference fix for CVE-2018-10361
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information on CVE-2018-12435/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12435/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12437/libtomcrypt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12436/wolfssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12322
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12321
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12320
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12495/discount
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1203{4,5}/yara
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream bug for libtomcrypt
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add more liblouis fixes via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-500{4,5,6}/libraw
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16652/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11385/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11386/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11406/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11407/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11408/symfony
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12029/passenger
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1202{6,7,8}/passenger
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVe-2018-10855/ansible
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2018-1118/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-12247/mruby
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add bug reference for CVE-2018-12248/mruby
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12435/botan fixed version in unstable
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] 5 commits: sources: add name and path info
Salvatore Bonaccorso
- Processing 6afe5c6cc0de13f45e34a1c80156fd70e2b602a5 failed
security tracker role
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12422/evolution-data-server
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing version for CVE-2018-12020 for python-gnupg
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add three (not yet CVEified) issues in src:lava
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mruby no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12422/evolution-data-server
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] old src name for lava
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] remove python-gnupg for CVE-2018-12020, it ships a mitigation but is not
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add redis to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add symfony to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] remove strongswan from dsa-needed, already released
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add redis to data/embedded-code-copies.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Add type of embedding for redis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add proposed update for CVE-2018-0496/freedink-dfarc via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Whitelist make update-packages as a supported target
Raphaël Hertzog
- [Git][security-tracker-team/security-tracker][master] 9 commits: Only list packages for stable for dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 10 commits: Only list packages for stable for dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] update for jessie EOL
Moritz Muehlenhoff
- Processing f91221c09dbe4acd757a50e537331ea1cbd2e9bb failed
security tracker role
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12453/redis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12265/exiv2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12264/exiv2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12265/exiv2 bug reference
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12264
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11040/libspring-java
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11039/libspring-java
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1103 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16129/node-superagent
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16119/node-fresh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mark CVE-2017-16118 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-16030 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove now unecessary TODO item
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16026/node-request
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16023/node-decamelize
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process CVE-2017-16021 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2017-106026
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16014/node-http-proxy, itp'ed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16012/{jquery,node-jquery}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16011/jquery
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-16005/node-http-signature
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference to #901669 for redis embedding lua5.1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing version for yara via unstable upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Revert use of Irker back to KGB
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust indentation for code-block
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add some initial wording on how to contribute for code
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference commit for CVE-2018-7727
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference commit for CVE-2018-7726
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference commit for CVE-2018-7725
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2011-0467 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] redis DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add intel-microcode to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reserve DSA for libgcyrpt20 update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add one ancient libpam-unix2 issue (CVE-2011-3172)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2014-0594/open-build-service
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2011-4182 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add information for CVE-2018-12326/redis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Cleanup list for issues which won't get an update in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] ca-certificates passed update window.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2016-1000023 was rejected in favour of CVE-2016-10540
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2016-1000013 was rejected in favour of CVE-2016-10531
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2016-1000025 was rejected in favour of CVE-2016-10542
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Document binary package pulling in needed dependencies
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Makefile: consistently use $(PYTHON) substitution
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new cantata issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark cantata as ignored
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] tripleo-heat-templates removed from unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new ffmpeg issue (exp only)
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVEs assigned for lava issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track CVEs assigned for cantata
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] claim mosquitto
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12558/libemail-address-perl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Makefile: don't hardcode the python interpreter
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1000135/network-manager fixed in experimental upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Make bin/update-nvd executable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11506 and CVE-2018-10853 as fixed in 4.16.16-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Make some remaining scripts executable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Revert executable bit for two files
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12578/sam2p
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process more NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12557/zuul
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12071/codeigniter
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Replace some NFUs with source package name tracking
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new ffmpeg issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8009
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-3760/ruby-sprockets
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] xen DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-3760/ruby-sprockets
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for discount issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track version where cantata disables the cantata-mounter
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Demote severity to unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Cleanup some notes
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add three liblnk issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] pre-commit hook: do not check for $GIT_DIR
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark jasperreports as end-of-life in Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add graphicsmagick and imagemagick to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add tomcat7 and 389-ds-base to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] dla: remove openjdk-7
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 2 commits: dla: claim xen
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12227,asterisk: Jessie is not affected.
Markus Koschany
- Processing 4a10273244582f41e1468979207923ec4d47c29e failed
security tracker role
- [Git][security-tracker-team/security-tracker][master] Fix typo in CVE list.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12563,CVE-2018-12565,lava-server: Jessie is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add java-server to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add libidn to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add mercurial to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: Adjust delimiter
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new CVEs for libfsntfs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add issue in libpff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-11723
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10841/glusterfs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10841/glusterfs bug reference: #901968
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12601/sam2p
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12600/imagemagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12599/imagemagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12327/ntp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add thunderbird and tomcat8 to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add php-horde-image to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add qemu to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1152/libjpeg-turbo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1002209/libquazip
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker] Pushed new branch update_python
Brian May
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track some pending CVEs via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8030/qpid-java, itp'ed: #840131
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] LTS/claim imagemagick
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] claim libidn
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Since scite/4.1.0-1 lua5.3 copy is not used anymore
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] claim mercurial
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-12563/lava-server
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix typo in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10841,glusterfs: Jessie is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add redis to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-10855,ansible: Jessie is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add ansible to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add note for lava-server
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add php5 to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: Remove libvncserver from dla-needed.txt. Already done.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add CVE-2016-10723/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-12537 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12615
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Claim php-horde-image in data/dla-needed.txt
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Annotate CVE-2018-11624 as not affecting stretch and jessie
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Annotate CVE-2018-11625 as not affecting stretch and jessie
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1394-1 for imagemagick
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Claim ansible in dla-needed.txt
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] new qemu issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Add comment re libidn in data/dla-needed.txt.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: redis fixed via DSA prior to LTS release.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] mruby fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] more stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] dla: unclaim phpmyadmin for now
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: claim libgcrypt20
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] add note for php5
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add upstream commit for CVE-2017-9774/php-horde-image.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1395-1 for php-horde-image
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] dla: claim thunderbird
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] claim phpmyadmin in dla-needed.txt
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] bouncycastle, lava-server DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new phpmyadmin issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new binutils issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new linux issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new exempi issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new jetty issue, needs to be checked whether older versions are affected
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new sunec/Java issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: ruby-ffi n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] asterisk n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] linux n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] libjpeg bugnum
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2018-12581
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-12641
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new phpldapadmin issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Update reference (unifying with kernel sec)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] phpldapadmin bugnum
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] sleuthkit bugnum
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] flif bugnum
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] electrum removed from thea rchive for jessie
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] dolibarr removed from jessie in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] redmine removed from jessie in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] First round of verified included uploads in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track libextractor and ncurses fixes included in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] nvidia-graphics-drivers fixed in jessie in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track clamav fixes via 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Further fixed verified for inclusion in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] faad2, ghostscript, file, blktrace fixes included in 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track intel-microcode update via 8.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] All planed updates were included in 8.11, last one checked lame
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for vcftools
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add vcftools reference as well for CVE-2018-11099, reporter did not provide…
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust tracking for CVE-2018-11507
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track second flif issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add commit for CVE-2017-9773 (php-horde-image)
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: Santiago already worked on this
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Mark that kf5-messagelib is efail-related.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] LTS/claim php5
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS/update php5 status
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Added some entries about packages fixed in wheezy and notes about this.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Added some more packages fixed in wheezy.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Added one more package fixed in wheezy.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Antoine already started on mercuial
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim slurm-llnl
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Mark redmine as end-of-life in Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] LTS/claim tomcat8
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add libspring-java to dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Fix version of procps for DLA-1390-1
Raphaël Hertzog
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-1000038,mupdf: Jessie is not affected
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-12641,binutils: Ignored in Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] LTS/Add and claim exiv2
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] claim dokuwiki in dla-needed.txt
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] chromium fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new gimp non-issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new binutils issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: Readd redis to dla-needed.txt. Jessie was not fixed.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Annotate commits related to exiv2/CVE-2018-10958 and exiv2/CVE-2018-10999
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Correct ordering
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug reference for CVE-2018-12326/redis.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] claim zendframework
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] LTS/tomcat8 status update
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1396-1 for redis
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] bin/gen-DSA: Support ELA for pushing to the repository.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] new git-annex issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] timidity fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1397-1 for php5
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new devscripts issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] nobody took this week yet
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] New firefox issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new trace issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new PHP issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Annotate commit related to exiv2/CVE-2018-10999
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] new kvm issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 3 commits: Claim ruby-passenger in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 6 commits: follow security team for binutils
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add linux to dla-needed.txt
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2015-7519,ruby-passenger: Will be fixed in Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] firefox-esr DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1400-1 for tomcat7
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2017-7674,CVE-2018-8014,tomcat7: Will be fixed via Jessie update
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new wordpress issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: new tiff issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: Correct CVE-2018-8014 entry in data/CVE/list
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1401-1 for graphicsmagick
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] xen DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new xen issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Claim qemu in data/dla-needed.txt
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Annotate commits related to exiv2/CVE-2018-11531
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Annotate commits related to exiv2/CVE-2018-12264
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Annotate commit related to exiv2/CVE-2018-12265
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1402-1 for exiv2
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS/Add exiv2 back to dla-needed.txt as it still has one open vulnerability
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] new jetty issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new issues in beep, mbedtls and busybox
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new qutebrowser, ocsinventory and ruby-zip issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new 389-ds issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 5 commits: readd graphicsmagick
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add openjpeg2
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: wireshark fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new issues in sympa, triplea, ruby-json-jwt, gosa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new gitlab issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] 2 commits: no CVE for git at the moment
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] unclaim mercurial
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1403-1 for zendframework
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1404-1 for lava-server
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] ignore CVE-2017-12870 for simplesamlphp as in Wheezy
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim simplesamlphp
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] CVE-2016-5388,tomcat7: Mark as fixed in Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] new mailman issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new libarchive-zip-perl issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1405-1 for libgcrypt20
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 2 commits: new openslp issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1406-1 for firefox-esr
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 2 commits: follow security team with no-dsa for CVE-2018-1000546
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1407-1 for mariadb-10.0
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 3 commits: add additional CVE ID fixed in firefox ESR, thanks pochu
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Removed postponed tag for two CVEs fixed in MariaDB
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11037 as postponed in jessie
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] exiv2 fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] New Linux issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new wine issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new libpdfbox-java issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] also track wine-development
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1408-1 for simplesamlphp
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1409-1 for mosquitto
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] readd mosquitto for the pending CVEs
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] bugs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] bugs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] bugs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new podofo issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new jetty issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new h2o issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] LTS/claim graphicsmagick
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new linux issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] dsa-needed.txt: update note about ruby2.3
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Add and claim ruby2.1 in dla-needed.txt
Santiago R.R.
- [Git][security-tracker-team/security-tracker][master] Claim python-pysaml2 and tiff in dla-needed.txt.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 5 commits: follow security team with no-dsa for CVE-2018-8036
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] LTS/tomcat8 status update
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Add bug number for jetty9 CVE.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add bug number for libpdfbox-java, CVE-2018-8036
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] track separate source package for pdfbox 2
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] CVE-2018-8036,libpdfbox-java: Fixed in unstable.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] new ansible issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] new linux issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new gpac issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] puppet n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new jabberd2 issue, one n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] bugs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Annotate commit related to graphicsmagick/CVE-2016-5239
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Annotate CVE-2017-11139 as not affecting graphicsmagick in jessie
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] bug
Moritz Muehlenhoff
Last message date:
Sat Jun 30 23:45:01 BST 2018
Archived on: Sat Jun 30 23:45:04 BST 2018
This archive was generated by
Pipermail 0.09 (Mailman edition).