[Git][security-tracker-team/security-tracker][master] Reserve DLA-1547-1 for libpdfbox-java
Chris Lamb
lamby at debian.org
Tue Oct 16 17:01:09 BST 2018
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
356bf212 by Chris Lamb at 2018-10-16T16:00:50Z
Reserve DLA-1547-1 for libpdfbox-java
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[16 Oct 2018] DLA-1547-1 libpdfbox-java - security update
+ {CVE-2018-11797}
+ [jessie] - libpdfbox-java 1:1.8.7+dfsg-1+deb8u2
[15 Oct 2018] DLA-1546-1 moin - security update
{CVE-2017-5934}
[jessie] - moin 1.9.8-1+deb8u2
=====================================
data/dla-needed.txt
=====================================
@@ -40,11 +40,6 @@ libav (Hugo Lefeuvre)
NOTE: 20180529: Help is welcome, feel free to mail Hugo. Still up-to-date. Help needed for CVE triage and patch development.
NOTE: 20180529: Just contacted some of the CVE reporters to ask for the reproducers, CC-ed team ML.
--
-libpdfbox-java (Chris Lamb)
- NOTE: 20181007: Can't find the upstream fixing commit atm (Chris Lamb)
- NOTE: 20181012: Have asked upstream for fixing commit (Chris Lamb)
- NOTE: 20181013: https://twitter.com/AndreasLehmi/status/1050787710942765056 (Chris Lamb)
---
libspring-java (Abhijith PA)
--
libssh
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/356bf2120732311b9491072932c1f9da19058fd7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/356bf2120732311b9491072932c1f9da19058fd7
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181016/0cb8cb52/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list