[Git][security-tracker-team/security-tracker][master] 2 commits: Remove spamassassin from dsa-needed list

Salvatore Bonaccorso carnil at debian.org
Sat Oct 27 21:45:25 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0b2939be by Salvatore Bonaccorso at 2018-10-27T20:41:09Z
Remove spamassassin from dsa-needed list

The update will be done via upcoming point release instead.

- - - - -
0507ca9c by Salvatore Bonaccorso at 2018-10-27T20:43:51Z
Mark three spamassassin issues as no-dsa/postponed

It is planned to update spamassassin via the upcoming point release
instead.

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -17334,9 +17334,11 @@ CVE-2018-11782
 	RESERVED
 CVE-2018-11781 (Apache SpamAssassin 3.4.2 fixes a local user code injection in the ...)
 	- spamassassin 3.4.2-1 (bug #908971)
+	[stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
 	NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
 CVE-2018-11780 (A potential Remote Code Execution bug exists with the PDFInfo plugin ...)
 	- spamassassin 3.4.2-1 (bug #908970)
+	[stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
 	NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
 CVE-2018-11779
 	RESERVED
@@ -55458,6 +55460,7 @@ CVE-2017-15706 (As part of the fix for bug 61201, the documentation for Apache T
 	NOTE: https://lists.apache.org/thread.html/e1ef853fc0079cdb55befbd2dac042934e49288b476d5f6a649e5da2@%3Cannounce.tomcat.apache.org%3E
 CVE-2017-15705 (A denial of service vulnerability was identified that exists in Apache ...)
 	- spamassassin 3.4.2-1 (bug #908969)
+	[stretch] - spamassassin <postponed> (Minor issue; can be fixed via point release)
 	NOTE: https://www.openwall.com/lists/oss-security/2018/09/16/1
 CVE-2017-15704
 	REJECTED


=====================================
data/dsa-needed.txt
=====================================
@@ -63,8 +63,6 @@ php7.0
 --
 smarty3
 --
-spamassassin
---
 sssd
   Maintainer prepared an update and proposed debdiff, acked for upload, but update needs further testing before release.
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/08f0c570bd2cd3a6daab57eaa4f0960272f9387c...0507ca9c8b34cff8085d146918a2706aaf3f29dc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/08f0c570bd2cd3a6daab57eaa4f0960272f9387c...0507ca9c8b34cff8085d146918a2706aaf3f29dc
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181027/cbe5754a/attachment.html>


More information about the debian-security-tracker-commits mailing list