January 2019 Archives by author
Starting: Tue Jan 1 08:08:03 GMT 2019
Ending: Thu Jan 31 22:43:35 GMT 2019
Messages: 754
- [Git][security-tracker-team/security-tracker][master] update status
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] remove <no-dsa> from jessie wireshark CVEs that will be fixed in next upload
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1634-1 for wireshark
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] new wireshark CVEs appeared
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] mark CVE-2018-19758 as no-dsa for Jessie
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] update status
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 5 commits: add openssh
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 3 commits: add libjpeg-turbo
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 3 commits: mark CVE-2016-10739 as no-dsa for jessie
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add ghostscript
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVEs fixed, so remove no-dsa
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: claim apache2
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add libreoffice
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] add libgd2
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] update status
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: add jackson-databind
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] mark CVE-2019-5718 as not affected for Jessie
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] mark CVE-2019-5721 as not-affected for Jessie
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1645-1 for wireshark
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim jackson-databind
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1647-1 for apache2
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVEs have been fixed
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim elfutils
Thorsten Alteholz
- [Git][security-tracker-team/security-tracker][master] claim systemd
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] triage CVE-2018-16866 away from jessie after verification code is missing
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] claim DLA-1639-1 for systemd
Antoine Beaupré
- [Git][security-tracker-team/security-tracker][master] DLA-1642-1 postgresql-9.4 - new upstream version
Christoph Berg
- [Git][security-tracker-team/security-tracker][master] libgxps: add fixed version for CVE-2018-10767
Jeremy Bicha
- [Git][security-tracker-team/security-tracker][master] CVE-2019-6133: fixed in policykit-1 0.105-25
Jeremy Bicha
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20217/krb5 fixed in unstable via new upstream version (1.16.2)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 4 commits: Add CVE-2018-20540/liblas
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream commit reference for CVE-2018-19758/libsndfile
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15756/libspring-java fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Three more libspring-java issues were already fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-2059{2,3}/mxml issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track stretch-pu fixes for further linux update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20651/binutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20650/poppler
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20650/poppler
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 12 commits: Reference gcc (libiberty) upstream fix for CVE-2018-12641
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-11723/libpff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing commit for CVE-2018-19664/libjpeg-turbo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3500/aria2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add GCC upstream bug references for CVE-2018-18483
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20330/libjpeg-turbo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Expand references for CVE-2018-15126/libvncserver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20004/mxml
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for unstable for CVE-2018-20004/mxml
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Align severity for CVE-2018-19432 with CVE-2018-13139
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2018-16872/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream commit for CVE-2018-20124/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add fixing version via untable for CVE-2018-16882/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference fix for CVE-2018-20216/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream commit for CVE-2018-20125/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream fix for CVE-2018-20126/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Remove no-dsa tagged entries with update in DLA-1627-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3572/ming
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20657/binutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2019-3500/aria2 as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-3500/aria2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20185: Reference comment from Bob Friesenhahn
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track CVE-2015-7686 and CVE-2018-12558 as adressed with upstream 1.910
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16888/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new gitlab issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for gitlab issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20574/yaml-cpp0.3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Correct upstream reference for CVE-2018-20573/yaml-cpp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20573/yaml-cpp0.3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add bug references for CVE-2018-20574/{yaml-cpp,yaml-cpp0.3}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3701/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug references for CVE-2018-20573/{yaml-cpp,yaml-cpp0.3}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1999{2,3,4,5}/dolibarr issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20348/libpff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20662/poppler
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Wrap long line for notes in CVE-2018-20662
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] yaml-cpp0.3 removed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Explicitly track the fix for CVE-2018-16470/ruby-rack in experimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-1404{0,1,2}/twitter-bootstrap3 issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Partially revert "stretch triage"
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3498/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add tracking information for CVE-2018-1404{0,2}/twitter-bootstrap3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-3498/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-3498/python-django
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add python-django to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Clarify note for CVE-2017-17529/abiword
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20538/nasm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20535/nasm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20671/binutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20673/binutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some IBM specific NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20538/nasm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20535/nasm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2017-9725/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] bgfminer removed from the archive in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream reference note for CVE-2019-3500/aria2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add ruby-loofah to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version via unstable for CVE-2018-20349/r-cran-igraph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version via unstable for CVE-2018-20482/tar
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update note for CVE-2018-20185/graphicsmagick
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove note on CVE-2019-3574/libsixel
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version CVE-2017-14107 for libzip embedded copy
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add fixing commit for CVE-2017-9146/libytnef
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add commit reference for CVE-2017-9473/libytnef
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-9472/libytnef
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2015-8985/glibc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove libssh from dsa-needed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11788/apache-karafa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for arc directory traversal issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-20467/imagemagick in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3804/cockpit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add fixed version for CVE-2018-16476/rails
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update some older enries for tika wich now is affected by some CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-1338/tika as unfixed for unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Sort entries top-down per suite
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust status for CVE-2018-12648/exempi
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5489/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1000871/hoteldruid
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add assigned CVE-2015-9275
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream pull request for CVE-2018-1000546/triplea
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference upstream commit for various rdesktop issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20030/libexif
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add pull and commit reference for CVE-2018-20187/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-20187/botan: reference commit instead of merge commit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix typo in introducing version for CVE-2018-20187
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-19998: Add references to upstream commits
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5720/frontaccounting
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Associate CVE-2018-1000890 with src:frontaccounting
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process three IBM specific NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1320/libthrift-java
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11798/thrift
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11798/thrift as unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20187/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for CVE-2018-20030/libexif
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-1320/libthrift-java
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-11798/thrift
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-20615/haproxy as not-affected for stretch (and jessie)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track proposed update for twitter-bootsrap3 via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14666/foreman
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-571{6,7,8,9}/wireshark issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20030/libexif: sort entries per suite
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Use same note for CVE-2018-1949{0,1,2}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20245
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1686{4,5,6}/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2018-1686{4,5,6}/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] exempi uploaded to unstable including fix for CVE-2018-12648
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add new busybox issue CVE-2018-20679
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5721/wireshark
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add new gitolite3 issue with rsync bundle helper
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-16865/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-20679/busybox
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-16864/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20683/gitolite3 assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference pull request for CVE-2018-1686{4,5}/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5882/irssi
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-5882/irssi
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20681/mate-screensaver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-34{59,60}/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-5882/irssi
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add more references for CVE-2018-1686{4,5,6}/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5892/frr, itp'ed, #863249
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-0542/node-xterm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1936{0,1,2}/jackson-databind
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16870/wolfssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add four new jackson-databind issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-16870/wolfssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Correctly track CVE-2018-14041/twitter-bootstrap3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2018-20677/twitter-boostrap3 (specific to 3.x series)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 6 commits: Add tag information for CVE-2018-20677/twitter-bootstrap3 upstream fix
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-10735/twitter-bootstrap* issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2016-10735/twitter-bootstrap3 via stretch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for tmpreaper issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-2036{3,4,5}/libraw
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20685/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16889/ceph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-16889/ceph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-6131/mupdf
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6128/tiff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug references for mupdf issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6129/libpng*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-17198, NFU in Apache Roller
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixing version for CVE-2019-3461/tmpreaper in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6133/policykit-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6133/policykit-1
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6111, CVE-2019-6110 and CVE-2019-6109
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3811/sssd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20699/docker.io
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add systemd to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix typo in note for sssd commit reference
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-3811/sssd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2018-2067{6,7}/twitter-bootstrap
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug number for CVE-2018-20685/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10892/docker.io via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1000888/php-pear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed versions for CVE-2018-1686{4,5}/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-1000888/php-pear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version via experimental for tracking for CVE-2018-20187/botan
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-20685/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-10771 and CVE-2018-10753 in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6250/zeromq3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2018-20187/botan via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for systemd update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-2053{2,3,4}/libsolv
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16886/etcd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1000888/php-pear
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6251/epiphany-browser
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add systemd for regression update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for libvncserver upload to unstable (#916941)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream references for CVE-2018-2045{0,2}/r-cran-readxl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream references for CVE-2019-624{5,6,7}
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-14662/ceph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16846/ceph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove tracking of bpo version
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for systemd regression update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process three NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one more NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20719/tikiwiki
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20718/ajaxplorer
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-18358/limesurvey
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6293/flex
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6292/yaml-cpp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for CVE-2019-6293/flex
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark yaml-cpp* issue (CVE-2019-6292) as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6292/yaml-cpp
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two new nasm issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20712/binutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6285/yaml-cpp and add Debian bug reference
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add php-pear to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version via unstable for CVE-2018-9240/ncmpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add mumble issue (#919249)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5010/python
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark python3.5 as removed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-16846/ceph
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Associate CVE-2018-5383 with firmware-nonfree
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6446/python-numpy
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-644{2,3,4,5}/ntpsec
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process three NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2019-3701/linux as unimportant
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Revert "data/CVE/list: Fix CVE-2018-19758 (libsndfile). Add fixed jessie version."
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-1121{2,3,4}/libjpeg-turbo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-646{1,2}/cairo
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6439/wolfssl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add four new cacti issues (CVE-2018-2072{3,4,5,6})
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20721/uriparser
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-16884/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for three CVEs for mupdf fixed via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for mysql-5.7 issues from Oracle CPU Jan 2019
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reverse order of listing: kbuild embeds make-dfsg
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Simplify note for CVE-2018-16883 for affected version information
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update notes on CVE-2019-3815/systemd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-2435/mysql-connector-python
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6240/gitlab
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add todo/note for CVE-2019-6256/liblivemedia
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-1002208/mono adressed with 5.18.0.240+dfsg-1 upload to unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Make clar status of CVE-2018-11761/tika (and respectively CVE-2018-11796)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Adjust libav version for CVE-2017-11684
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2018-20540/liblas
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove note on CVE-2019-6256, confirmed that the fix was in 2018.11.26
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add assigned CVEs for drupal7 isues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Demote severity of CVE-2019-6129 to unimportant across source packages
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2016-10739/glibc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add upstream reference for CVE-2016-10739/glibc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-10739/glibc as no-dsa
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2016-10739/glibc for tracking
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3808, CVE-2019-3809 and CVE-2019-3810 for src:moodle
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6501/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-4240/gitlab
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixing version for tika update via unstable and four open CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-0190
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add note for CVE-2019-6501/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6501/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6502/opensc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add assigned CVEs for thunderbird issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference for CVE-2019-6109
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fixes for two CVEs included in DLA-1638-1, remove no-dsa tagged entries
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-17189/apache2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-17199/apache2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update entry for CVE-2018-11803/subversion
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-11803/subversion as not affected for stretch and earlier
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add ceph-deploy to list of removed packages (from all suites)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6116/ghostscript
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add ghostscript to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6109/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reference patch for CVE-2019-6109/openssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process two NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for CVE-2018-17199/apache2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20669/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add src:lua5.3 for CVE-2019-6706
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2019-6486/golang*
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add related commits for exiv2 for upstream issues #590
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-6486/golang-1.11
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process Foxit rader NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6777/zoneminder
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6777/zoneminder
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6778/qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-18359/postgis
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-20683/gitolite3
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one IBM specific NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Fix for CVE-2017-14107/libzip entered unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2018-20743/mumble assigned
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-9838/ocaml
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2017-9779/ocaml
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2016-5537 and CVE-2018-17191 fixed with netbeans/10.0-1 upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16880/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3819/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-16881/rsyslog
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-2045{7,9}/radare2 fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 4 commits: Mark CVE-2018-17191 as ignored
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for ghostscript update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark golang-1.10 as removed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2019-6486/golang-1.12 as unfixed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6486/golang-1.12
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark gcc-5 as removed from all suported suites
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Clarify fixing commit for CVE-2018-11790/libreoffice
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-11790: Track first version in unstable containing the commit
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add references for CVE-2017-2808/ledger
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add references for CVE-2017-1248{1,2}/ledger
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add qtbase-opensource-src to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6976/vips
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6799/libgd2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add reference to (proposed) patch for PHP embedeed copy of libgd
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add two new phpmyadmin issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process one NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-6486/golang-1.12
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-2045{0,2}/r-cran-readxl, #919324
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Specifically for CVE-2019-6778 track as well slirp4netns
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add slirp4netns embedding qemu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6977/libgd2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add another mumble dos issue, #920476
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process CVE-2019-3818 as NFU
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-2435 via unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add coturn source package tracking for CVE-2018-4056, CVE-2018-4058 and CVE-2018-4059
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6978/libgd2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Remove reference to php commit reference
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2012-6709/elinks via experimental
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-405{6,8,9}/coturn fixed in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update used version for stretch-pu update for ncmpc
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-3813/spice
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-3813/spice
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add CVE-2018-20745/yii, itp'ed
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Several CVEs for mysql-5.7 fixed in unstable (Oracle CPU January 2019)
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for libgd2 issue
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2018-2045{0,2}/r-cran-readxl as no-dsa for stretch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-1000018/rssh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add rssh to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-1340/guacamole-client
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-1340/guacamole-client
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-715{1,2,3,4}/binaryen issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track (proposed) fix for CVE-2018-17000/tiff
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add four new CVE-2019-71{46,48,49,50}/elfutils issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for spice DSA
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6798/phpmyadmin
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6799/phpmyadmin
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add notes for binaryen issues referencing commits from upstream issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-715{1,2,3,4}/binaryen
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track proposed update for r-cran-readxl via stetch-pu
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track new mariadb CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-2503 for MariaDB 10.0.37
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add three new zoneminder issues (CVE-2019-699{0,1,2})
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add thunderbird to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version via unstable for three thunderbird CVEs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] firefox issues from mfsa2019-01 fixed via 65.0-1 upload
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 5 commits: Add upstream commit reference for CVE-2019-7150
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fix for CVE-2017-8872/libxml2
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2018-17206/openvswitch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2018-17205/openvswitch fixed in 2.10.0+2018.08.28+git.8ca7c82b7d+ds1-1 for unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track unstable fix for CVE-2018-17204/openvswitch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add Debian bug reference for CVE-2019-7150/elfutils
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DSA number for php-pear update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] One duplicate CVE for avahi REJECTED
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for mariadb-10.3 issues
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20748/libvncserver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-207{49,50}/libvncserver incomplete fixes for CVE-2018-15127
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Stretch not affected by CVE-2018-20748, CVE-2018-20749 and CVE-2018-20750
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add spelling fix in explanation of not-affected status
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2018-207{48,49,50}/libvncserver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add fixed version for CVE-2019-3813/spice in unstable
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2018-207{48,49,50}/libvncserver
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-7147/nasm
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6690/python-gnupg
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-5782/chromium
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12023/jackson-databind
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-12022/jackson-databind
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Update information for CVE-2018-16882/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add rdesktop to dsa-needed list
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2017-18360/linux
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-6438/slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2019-6438/slurm-llnl
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] 3 commits: Add Debian bug reference for CVE-2019-6992/zoneminder
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Add CVE-2019-728{2,3}/netkit-rsh
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Mark netkit-rsh as no-dsa for stretch
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] CVE-2019-6245: Reference fix from svn revision 119 for src:agg
Salvatore Bonaccorso
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1627-1 for qtbase-opensource-src
Adrian Bunk
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-8791 - CVE-2018-8800, CVE-2018-20174 - CVE-2018-20182/rdesktop
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Add missed closing bracket to CVE-2018-8799/rdesktop
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-{87xx,8800},CVE-2018-201xx/rdesktop fixed version in unstable
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-20187/botan
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Add CVE-2018-11798/thrift fixed version in unstable
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2019-6250/zeromq3 as not-affected for jessie
László Böszörményi
- [Git][security-tracker-team/security-tracker][master] Add kbuild which has a code copy of make-dfsg (see bug: 919295)
Gianfranco Costamagna
- [Git][security-tracker-team/security-tracker][master] apt fixed
Julien Cristau
- [Git][security-tracker-team/security-tracker][master] Reserve DSA-4374-1 for qtbase-opensource-src (CVE-2018-15518 CVE-2018-19870 CVE-2018-19873)
Sebastien Delafond
- [Git][security-tracker-team/security-tracker][master] claim sssd
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Update status of FreeRDP backporting efforts.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20681: Mark mate-screensaver in jessie (GTK-2 build) as <not-affected>.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: Revert "mark CVE-2018-19758 as no-dsa for Jessie" (already fix in jessie, see DLA-1632-1)
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add poppler (CVE-2018-20650, with low prio in comment).
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: add note to phpmyadmin
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Add another note to phpmyadmin.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/CVE/list: Update CVE-2018-20592 and CVE-2018-20593. Upstream simply...
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Adding aria2, for <no-dsa> issue CVE-2019-3500.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/CVE/list: Mark CVE-2018-16883 (sssd) as <not-affected> for version in jessie.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1635-1 for sssd
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2017-11684 (libav) fixed since at least 6:11.12-1~deb8u1.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 3 commits: data/CVE/list: Mark libav in jessie as not affected by CVE-2017-11719.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] CVE-2017-7863: libav in jessie is partially affected by it.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] data/CVE/list: Mark libav in jessie as <not-affected> by CVE-2018-10001.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/CVE/list: Mark libav in jessie as <not-affected> by CVE-2018-13301.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: claim openssh (also working on that for wheezy-elts)
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1654-1 for libav
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Re-add libav. Not done, yet.
Mike Gabriel
- [Git][security-tracker-team/security-tracker][master] CVE/list: update for latest cacti release
Paul Gevers
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: add a note about phpmyadmin
Lucas Kanashiro
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1637-1 for apt
Julian Andres Klode
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20651,CVE-2018-20623,binutils: Mark as ignored for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Triage liblas for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 4 commits: CVE-2018-20004,mxml: Link to fixing commit, remove no-dsa tag for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 3 commits: CVE-2018-19139, CVE-2018-18873, jasper: Remove no-dsa tags.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2019-3500,aria2: Mark as no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim libcaca in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-19139,jasper: Issue is not yet fixed.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-16888,systemd: Mark as no-dsa for Jessie.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 4 commits: CVE-2018-20348,libpff: no-dsa for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2017-11684,libav: Link to fixing commit
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20573,CVE-2018-20574,yaml-cpp,yaml-cpp0.3: postponed for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Fix CVE/list entries about yaml-cpp0.3
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1630-1 for libav
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Readd libav to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Assign myself to one week in February for LTS frontdesk.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1631-1 for libcaca
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim sqlite3 in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: sqlite3: Remove no-dsa tags for Jessie
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim wordpress in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] CVE-2018-17191,netbeans: Stretch is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Update status of wordpress in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim rssh in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: CVE-2019-6131,mupdf: Jessie is not affected.
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add coturn to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Add php5 to dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1650-1 for rssh
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] Claim agg in dla-needed.txt
Markus Koschany
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage python-django for jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1629-1 for python-django
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-20673 & CVE-2018-20671 in binutils for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-20030 in libexif for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-20683 in gitolite3 for jessie; the issue is an optional helper.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: Triage CVE-2018-20679 in busybox for jessie LTS.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] Triage CVE-2018-16889 in ceph for jessie LTS; vulnerable code not present.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage libpng for jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] 2 commits: data/dla-needed.txt: Triage apt for jessie.
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] CVE-2019-3462 in APT handled/released in DLA-1637-1; thanks juliank et al.!
Chris Lamb
- [Git][security-tracker-team/security-tracker][master] dla-needed: claim qemu
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1632-1 for libsndfile
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: claim aria2
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: claim libpng
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] libpng: CVE-2019-6129 <ignored> in Jessie
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1636-1 for aria2
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] remove no-dsa since issue was addressed in dla
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] openjpeg2: mark CVE-2018-5727 <ignored> in jessie
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] openjpeg2: triage CVE-2018-5727 as unimportant
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: update tiff and qemu entries
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: claim tmpreaper
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: update tmpreaper entry
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: update qemu entry
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1640-1 for tmpreaper
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] dla-needed: claim faad2
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] CVE-2018-19665/qemu: update notes
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] reserve DLA-1646-1 for qemu update
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] CVE-2018-17958: remove no-dsa (postponed) (jessie)
Hugo Lefeuvre
- [Git][security-tracker-team/security-tracker][master] unclaimed after 3 weeks of inactivity: nss and tiff
Holger Levsen
- [Git][security-tracker-team/security-tracker][master] Still no fix for cairo.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Claiming nettle.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Triage results.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Nettle conclusion.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Changed decision about nettle update.
Ola Lundqvist
- [Git][security-tracker-team/security-tracker][master] Claim Python 3.4
Brian May
- [Git][security-tracker-team/security-tracker][master] Update Python3.4 DLA status
Brian May
- [Git][security-tracker-team/security-tracker][master] dla: claim tzdata and libdatetime-timezone-perl
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1624-1 for thunderbird
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1625-1 for tzdata
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1626-1 for libdatetime-timezone-perl
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take polkit
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take poppler
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] poppler no-dsa on jessie
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 2 commits: dla: poppler already triaged no-dsa for jessie
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1644-1 for policykit-1
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] CVE-2019-6706: update affected versions of lua
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take ghostscript
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 3 commits: Mark CVE-2018-18501 as affecting firefox-esr
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] 2 commits: Triage thunderbird
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2016-5824 as affecting thunderbird
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take spice
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take mariadb-10.0
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: remove libreoffice, no open issues
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1648-1 for firefox-esr
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1649-1 for spice
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take libvncserver
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take rdesktop
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] CVE-2018-15126/libvncserver affects jessie
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1652-1 for libvncserver
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take coturn
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] dla: take postgis
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1653-1 for postgis
Emilio Pozuelo Monfort
- [Git][security-tracker-team/security-tracker][master] thunderbird DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] gitlab fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new chromium issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new exiv2 issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new libsixel issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new yaml-cpp issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libfsntfs non-issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libgc fixed a while ago
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] liblnk non issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] abiword fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] abiword non issue after further inspection
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] aodh fixed in sid
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] adplug fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] mruby fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] exempi fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] take loofah and django
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new tcc issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new haproxy issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] loofah, django DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] wireshark postponed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] wireshark fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] xen fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add note on tmpreaper for jessie
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] tmpreaper DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new matrix issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] ceph no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs (Red Hat ships .NET), but it's different from src:mono
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] vlc DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] take xen
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libfsntfs fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add CVE ID to existing chromium update
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] two issues ignored for buster
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] zeromq, xen DSAs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] epiphany unimportant
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] agg, svgpp bugs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new r-cran-readxl issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] flex no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new java issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new vbox issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] python postponed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] ntpsec bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs (and some <removed> entries no longer present in any suite)
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new mysql issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Oracle NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add retroactively assigned Chromium ID
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] non issues in catdoc and recutils
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new liblivemedia issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] one more mysql issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] four vague reports against libsixel
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] liblivemedia bug
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new mysql-connector-python issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libapache-poi-java fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] ntpsec fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new vbox issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new gitlab issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] drupal7 DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] libpng no-dsa (borderline non issue)
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new unimportant glibc issue (x32-specific)
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] tika fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new pdns-recursor isues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] pdns-recursor fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new apache issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] "new" AOOO security issue fixed in Libreoffice 3.5 years ago...
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] ntopng fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] nasm no-dsa
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new exiv issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] svgpp fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] openjdk-11 fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] ncmpc spu
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add qtbase-opensource-src to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] stretch triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] filed bug for clarifying octavia
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] buster triage
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] take rssh
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] octavia n/a
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new firefox issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new chromium issues
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add chromium to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] one nagios issue unimportant
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] apache2 fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] binarygen fixed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] new catdoc issue
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] take thunderbird
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] firefox DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] rssh DSA
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] NFU
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] add go to dsa-needed
Moritz Muehlenhoff
- [Git][security-tracker-team/security-tracker][master] Remove pdns, pdns-recursor from dla-needed.txt and update CVE
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: update note
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] mark CVE-2018-20337 CVE-2018-20363 as not affected for jessie
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim mxml
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20364 CVE-2018-20365 are not-affected too for jessie
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] Reserve DLA-1641-1 for mxml
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim drupal7
Abhijith PA
- [Git][security-tracker-team/security-tracker][master] pick openssh
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] 2 commits: add DSA for apt
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] add link to the Ubuntu bug
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] add Max Justicz blog post link
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] fix typo
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] release DSA for coturn
Yves-Alexis Perez
- [Git][security-tracker-team/security-tracker][master] Mark CVE-2019-6256 as fixed in liblivemedia/2018.11.26-1
Sebastian Ramacher
- [Git][security-tracker-team/security-tracker][master] CVE-2019-3574/libsixel
Henri Salo
- [Git][security-tracker-team/security-tracker][master] Fix typo
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20685/openssh
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-18718/gthumb
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20212/twiki
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] Fix invalid non-printable character
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-11803/subversion
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2019-6706 lua
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2018-20098/exiv2
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] CVE-2017-18359/postgis
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] NFU
Henri Salo
- [Git][security-tracker-team/security-tracker][master] Add details for CVE-2019-5885
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] Add more details for CVE-2019-5885
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] CVE-2019-5885: improve the description according to the actual problem fixed in the package
Andrej Shadura
- [Git][security-tracker-team/security-tracker][master] LTS/Update symfony status
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS/Update uw-imap status
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] Add note for future claimants of nss
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS/Update symfony & uw-imap status
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] LTS: claim php5 in dla-needed.txt
Roberto C. Sánchez
- [Git][security-tracker-team/security-tracker][master] boost1.67 embeds unicode-data
Paul Wise
- Processing b98d58683af55cda604142cf0df785fb3834065a failed
security tracker role
- Processing 2be01f6f3920270a2e3c0405b6b9df9c51e61b10 failed
security tracker role
- Processing ad3156ea2bf0f96e6cd21339121b8c83401bbe8a failed
security tracker role
- Processing c1803380e71bae515164afcfe0e26c93ae13bb59 failed
security tracker role
- Processing 3fabf69a918378bd2f3e2465e9977b3635120e52 failed
security tracker role
Last message date:
Thu Jan 31 22:43:35 GMT 2019
Archived on: Thu Jan 31 22:43:38 GMT 2019
This archive was generated by
Pipermail 0.09 (Mailman edition).