[Git][security-tracker-team/security-tracker][master] Reserve DLA-1632-1 for libsndfile

Hugo Lefeuvre hle at debian.org
Thu Jan 10 15:35:00 GMT 2019


Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker


Commits:
13e87527 by Hugo Lefeuvre at 2019-01-10T15:34:35Z
Reserve DLA-1632-1 for libsndfile

- - - - -


2 changed files:

- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[10 Jan 2019] DLA-1632-1 libsndfile - security update
+	{CVE-2018-19758}
+	[jessie] - libsndfile 1.0.25-9.1+deb8u3
 [09 Jan 2019] DLA-1631-1 libcaca - security update
 	{CVE-2018-20544 CVE-2018-20546 CVE-2018-20547 CVE-2018-20549}
 	[jessie] - libcaca 0.99.beta19-2+deb8u1


=====================================
data/dla-needed.txt
=====================================
@@ -64,10 +64,6 @@ libraw (Abhijith PA)
   NOTE: especially those that are still marked vulnerable in Stretch but also
   NOTE: the stack-based and heap-based overflow issues. (apo)
 --
-libsndfile (Hugo Lefeuvre)
-  NOTE: 20181226: CVE-2018-19758: currently checking
-  NOTE: 20181226: CVE-2017-17457/6: asked for cve update as duplicates of CVE-2017-14245/CVE-2017-14246, no answer yet
---
 linux (Ben Hutchings)
 --
 linux-4.9 (Ben Hutchings)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/13e875279575fdee19bdfc577a1b0f0cdc65dae0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/13e875279575fdee19bdfc577a1b0f0cdc65dae0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190110/62273f41/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list