[Git][security-tracker-team/security-tracker][master] 2 commits: Remove spamassassin from dsa-needed list
Salvatore Bonaccorso
carnil at debian.org
Sat Oct 27 21:45:25 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
0b2939be by Salvatore Bonaccorso at 2018-10-27T20:41:09Z
Remove spamassassin from dsa-needed list
The update will be done via upcoming point release instead.
- - - - -
0507ca9c by Salvatore Bonaccorso at 2018-10-27T20:43:51Z
Mark three spamassassin issues as no-dsa/postponed
It is planned to update spamassassin via the upcoming point release
instead.
- - - - -
2 changed files:
- data/CVE/list
- data/dsa-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -17334,9 +17334,11 @@ CVE-2018-11782
RESERVED
CVE-2018-11781 (Apache SpamAssassin 3.4.2 fixes a local user code injection in the ...)
- spamassassin 3.4.2-1 (bug #908971)
+ [stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
CVE-2018-11780 (A potential Remote Code Execution bug exists with the PDFInfo plugin ...)
- spamassassin 3.4.2-1 (bug #908970)
+ [stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
CVE-2018-11779
RESERVED
@@ -55458,6 +55460,7 @@ CVE-2017-15706 (As part of the fix for bug 61201, the documentation for Apache T
NOTE: https://lists.apache.org/thread.html/e1ef853fc0079cdb55befbd2dac042934e49288b476d5f6a649e5da2@%3Cannounce.tomcat.apache.org%3E
CVE-2017-15705 (A denial of service vulnerability was identified that exists in Apache ...)
- spamassassin 3.4.2-1 (bug #908969)
+ [stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
CVE-2017-15704
REJECTED
=====================================
data/dsa-needed.txt
=====================================
@@ -63,8 +63,6 @@ php7.0
--
smarty3
--
-spamassassin
---
sssd
Maintainer prepared an update and proposed debdiff, acked for upload, but update needs further testing before release.
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/08f0c570bd2cd3a6daab57eaa4f0960272f9387c...0507ca9c8b34cff8085d146918a2706aaf3f29dc
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/08f0c570bd2cd3a6daab57eaa4f0960272f9387c...0507ca9c8b34cff8085d146918a2706aaf3f29dc
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181027/cbe5754a/attachment.html>
More information about the debian-security-tracker-commits
mailing list