[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add missing attributions and dates.
Chris Lamb
lamby at debian.org
Sat Sep 22 13:05:00 BST 2018
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ad90ee80 by Chris Lamb at 2018-09-22T12:04:34Z
data/dla-needed.txt: Add missing attributions and dates.
- - - - -
1 changed file:
- data/dla-needed.txt
Changes:
=====================================
data/dla-needed.txt
=====================================
@@ -11,13 +11,12 @@ https://wiki.debian.org/LTS/Development#Triage_new_security_issues
--
389-ds-base (Hugo Lefeuvre)
- NOTE: 20180901: No detailed information or a reproducer available at the
- NOTE: moment. Check. (apo)
+ NOTE: 20180901: No detailed information or a reproducer available at the moment. Check. (apo)
--
activemq (Abhijith PA)
--
dnsmasq (Santiago)
- NOTE: main reason for a DLA is to update dns trust anchors
+ NOTE: 2010920: main reason for a DLA is to update dns trust anchors (Santiago)
--
enigmail
NOTE: 20180603: Commits between https://sourceforge.net/p/enigmail/source/ci/f6c111 (abhijith)
@@ -30,8 +29,8 @@ firefox-esr (Emilio Pozuelo)
NOTE: 20180525: This needs some backports (llvm, rustc, cargo) which need some work.
--
ghostscript
- NOTE: CVE-2018-16543 is still unfixed. Preliminary work is available at
- NOTE: https://people.debian.org/~apo/lts/. See also the README.
+ NOTE: 20180913: CVE-2018-16543 is still unfixed. Preliminary work is available at
+ NOTE: 20180913: https://people.debian.org/~apo/lts/. See also the README. (apo)
--
gnutls28
NOTE: 20180824: Upstream patch is quite invasive, adding new options etc. (lamby)
@@ -45,7 +44,7 @@ kdepim
libav (Hugo Lefeuvre)
NOTE: 20180118: Diego Biurrun (from the libav team) was working on patches, but encountered personal issues and had to stop.
NOTE: 20180118: It is unlikely that he will start again in the next weeks.
- NOTE: 20180118: I am currently working on CVE triage but I will not be able to process the whole backlog until May.
+ NOTE: 20180118: I am currently working on CVE triage but I will not be able to process the whole backlog until May. (Hugo)
NOTE: 20180529: Help is welcome, feel free to mail Hugo. Still up-to-date. Help needed for CVE triage and patch development.
NOTE: 20180529: Just contacted some of the CVE reporters to ask for the reproducers, CC-ed team ML.
--
@@ -82,9 +81,9 @@ python2.7 (Antoine Beaupré)
python3.4 (Antoine Beaupré)
--
salt
- NOTE: CVE-2017-7893 is not crucial since the managed system must be
- NOTE: compromised first. But the security escalation effect can cause
- NOTE: a lot of system compromised.
+ NOTE: 20180921: CVE-2017-7893 is not crucial since the managed system must be
+ NOTE: 20180921: compromised first. But the security escalation effect can cause
+ NOTE: 20180921: a lot of system compromised. (ola)
--
samba (Holger Levsen)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ad90ee80a445f8494239675021918a4dd569da99
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ad90ee80a445f8494239675021918a4dd569da99
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180922/7ba6185a/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list