[Git][security-tracker-team/security-tracker][master] Reserve DLA-1679-1 for php5
Roberto C. Sánchez
roberto at debian.org
Sun Feb 17 01:22:28 GMT 2019
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker
Commits:
63f31944 by Roberto C. Sánchez at 2019-02-17T01:21:11Z
Reserve DLA-1679-1 for php5
- - - - -
2 changed files:
- data/DLA/list
- data/dla-needed.txt
Changes:
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,5 @@
+[16 Feb 2019] DLA-1679-1 php5 - security update
+ [jessie] - php5 5.6.40+dfsg-0+deb8u1
[16 Feb 2019] DLA-1678-1 thunderbird - security update
{CVE-2018-18356 CVE-2018-18500 CVE-2018-18501 CVE-2018-18505 CVE-2018-18509 CVE-2019-5785}
[jessie] - thunderbird 1:60.5.1-1~deb8u1
=====================================
data/dla-needed.txt
=====================================
@@ -96,10 +96,6 @@ openjdk-7 (Emilio)
--
openssh (Mike Gabriel)
--
-php5 (Roberto C. Sánchez)
- NOTE: 20190212: Updated package of 5.6.40 is ready (incorporating Abhijith PA's 5.6.39+dfsg-0+deb8u2 update as well).
- NOTE: 20190212: Waiting on CVE assignments from upstream. (roberto)
---
phpmyadmin
NOTE: CVE-2019-6798: SQL injection is serious but if you have been able to login as a crafted user
NOTE: CVE-2019-6798: that is a more serious problem. The fix is simple so it can still be worth fixing
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/63f3194419d3fe6a80c36f0a4f41b31c88056cb5
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/63f3194419d3fe6a80c36f0a4f41b31c88056cb5
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190217/09086692/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list