[Git][security-tracker-team/security-tracker][master] dla-needed: update faad2 and kde4libs entries

Hugo Lefeuvre hle at debian.org
Tue Mar 19 10:44:46 GMT 2019


Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b0eca7a1 by Hugo Lefeuvre at 2019-03-19T10:42:37Z
dla-needed: update faad2 and kde4libs entries

contacted kde4libs upstream about CVE-2019-7443, it would be good to know
if they are going to apply the kauth fix.

- - - - -


1 changed file:

- data/dla-needed.txt


Changes:

=====================================
data/dla-needed.txt
=====================================
@@ -22,7 +22,7 @@ evolution
 --
 faad2 (Hugo Lefeuvre)
   NOTE: 20190225: No known patch yet. Going to fix the most exploitable issues at first.
-  NOTE: CVE-2018-20362: wrote a patch, currently testing it. This might fix many other
+  NOTE: 20190319: CVE-2018-20362: wrote a patch, currently testing it. This might fix many other
   NOTE: issues at the same time.
 --
 firmware-nonfree (Emilio)
@@ -40,6 +40,7 @@ imagemagick (Roberto C. Sánchez)
 --
 kde4libs (Hugo Lefeuvre)
   NOTE: 20190317: not sure kauth fix works for kde4libs, requires some testing, still working on it
+  NOTE: 20190319: need to make it clear, contacted upstream, see debian-lts ml
 --
 libav
   NOTE: 20190131: Re-added after ~deb8u5 upload. Still not done, yet.



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b0eca7a1e02fb4d8c02224ed56fdcfbd3fa3b1a0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b0eca7a1e02fb4d8c02224ed56fdcfbd3fa3b1a0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190319/70173645/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list