[Git][security-tracker-team/security-tracker][master] 2 commits: the time for an upload has come
Thorsten Alteholz
alteholz at debian.org
Tue Nov 26 21:27:14 GMT 2019
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6229cfb6 by Thorsten Alteholz at 2019-11-26T21:26:19Z
the time for an upload has come
- - - - -
c0f8eb03 by Thorsten Alteholz at 2019-11-26T21:26:57Z
Reserve DLA-2010-1 for bsdiff
- - - - -
2 changed files:
- data/CVE/list
- data/DLA/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -176967,7 +176967,6 @@ CVE-2016-5339
CVE-2014-9862 (Integer signedness error in bspatch.c in bspatch in bsdiff, as used in ...)
{DLA-697-1}
- bsdiff 4.3-17
- [jessie] - bsdiff <no-dsa> (Minor issue; can be fixed via point release)
NOTE: https://bugs.chromium.org/p/chromium/issues/detail?id=372525
CVE-2016-5361 (programs/pluto/ikev1.c in libreswan before 3.17 retransmits in initial ...)
- libreswan <not-affected> (Fixed before initial upload to Debian)
=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[26 Nov 2019] DLA-2010-1 bsdiff - security update
+ {CVE-2014-9862}
+ [jessie] - bsdiff 4.3-15+deb8u1
[26 Nov 2019] DLA-2009-1 tiff - security update
{CVE-2017-17095 CVE-2018-12900 CVE-2018-18661 CVE-2019-6128 CVE-2019-17546}
[jessie] - tiff 4.0.3-12.3+deb8u10
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/ef9c6552915fb1d6d6507b3c898d0c7907c04786...c0f8eb03ce4bfdc25a88e452a0c16c4490c745da
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/ef9c6552915fb1d6d6507b3c898d0c7907c04786...c0f8eb03ce4bfdc25a88e452a0c16c4490c745da
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191126/e54b5078/attachment.html>
More information about the debian-security-tracker-commits
mailing list