[Git][security-tracker-team/security-tracker][master] neovim DSA

Moritz Muehlenhoff jmm at debian.org
Tue Jul 23 22:05:43 BST 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
708b6175 by Moritz Muehlenhoff at 2019-07-23T21:05:10Z
neovim DSA
buster/stretch triage

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -558,7 +558,9 @@ CVE-2019-13964
 CVE-2019-13963
 	RESERVED
 CVE-2019-13962 (lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC medi ...)
-	- vlc <unfixed>
+	- vlc <unfixed> (low)
+	[buster] - vlc <postponed> (Minor issue, wait until next 3.0.x release)
+	[stretch] - vlc <postponed> (Minor issue, wait until next 3.0.x release)
 	[jessie] - vlc <end-of-life> (https://lists.debian.org/debian-security-announce/2018/msg00130.html)
 	NOTE: http://git.videolan.org/?p=vlc/vlc-3.0.git;a=commit;h=2b4f9d0b0e0861f262c90e9b9b94e7d53b864509
 	NOTE: https://trac.videolan.org/vlc/ticket/22240
@@ -12017,7 +12019,9 @@ CVE-2019-1010281
 CVE-2019-1010280
 	RESERVED
 CVE-2019-1010279 (Open Information Security Foundation Suricata prior to version 4.1.3 i ...)
-	- suricata 1:4.1.3-1
+	- suricata 1:4.1.3-1 (low)
+	[buster] - suricata <no-dsa> (Minor issue)
+	[stretch] - suricata <no-dsa> (Minor issue)
 	NOTE: https://github.com/OISF/suricata/pull/3625
 	NOTE: https://github.com/OISF/suricata/commit/d8634daf74c882356659addb65fb142b738a186b
 	NOTE: https://redmine.openinfosecfoundation.org/issues/2770
@@ -12081,7 +12085,9 @@ CVE-2019-1010253
 CVE-2019-1010252 (The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input ...)
 	NOT-FOR-US: ONOS
 CVE-2019-1010251 (Open Information Security Foundation Suricata prior to version 4.1.2 i ...)
-	- suricata 1:4.1.2-2
+	- suricata 1:4.1.2-2 (low)
+	[buster] - suricata <no-dsa> (Minor issue)
+	[stretch] - suricata <no-dsa> (Minor issue)
 	NOTE: https://github.com/OISF/suricata/commit/11f3659f64a4e42e90cb3c09fcef66894205aefe
 	NOTE: https://github.com/OISF/suricata/commit/8357ef3f8ffc7d99ef6571350724160de356158b
 	NOTE: https://redmine.openinfosecfoundation.org/issues/2736


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[23 Jul 2019] DSA-4487-1 neovim - security update
+	{CVE-2019-12735}
+	[stretch] - neovim 0.1.7-4+deb9u1
 [21 Jul 2019] DSA-4486-1 openjdk-11 - security update
 	{CVE-2019-2745 CVE-2019-2762 CVE-2019-2769 CVE-2019-2786 CVE-2019-2816 CVE-2019-2818 CVE-2019-2821}
 	[buster] - openjdk-11 11.0.4+11-1~deb10u1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/708b6175339e1a158b3683dc2ff5ec6483d1e1ce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/708b6175339e1a158b3683dc2ff5ec6483d1e1ce
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190723/5dcd2b48/attachment.html>


More information about the debian-security-tracker-commits mailing list