Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (3)
Add ansible to dla-needed.txt
· 823c11fe
Markus Koschany
authored
Jun 14, 2019
823c11fe
Remove vlc from dla-needed.txt
· 54ae4c7c
Markus Koschany
authored
Jun 14, 2019
54ae4c7c
CVE-2019-5439, vlc is EOL in Jessie
· bc116d6a
Markus Koschany
authored
Jun 14, 2019
bc116d6a
Hide whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
bc116d6a
...
...
@@ -119,6 +119,7 @@ CVE-2019-12780 (The Belkin Wemo Enabled Crock-Pot allows command injection in th
CVE-2019-5439 (A Buffer Overflow in VLC Media Player < 3.0.7 causes a crash which ...)
{DSA-4459-1}
- vlc 3.0.7-1 (bug #930276)
[jessie] - vlc <end-of-life> (https://lists.debian.org/debian-security-announce/2018/msg00130.html)
NOTE: https://hackerone.com/reports/484398
NOTE: http://www.jbkempf.com/blog/post/2019/VLC-3.0.7-and-security
CVE-2019-12779 (libqb before 1.0.5 allows local users to overwrite arbitrary files via ...)
data/dla-needed.txt
View file @
bc116d6a
...
...
@@ -9,6 +9,8 @@ To pick an issue, simply add your name behind it. To learn more about how
this list is updated have a look at
https://wiki.debian.org/LTS/Development#Triage_new_security_issues
--
ansible
--
bind9 (Thorsten Alteholz)
NOTE: 20190512: test package
...
...
@@ -135,8 +137,6 @@ tomcat8 (Abhijith PA)
--
vim (Emilio)
--
vlc (Markus Koschany)
--
wordpress
NOTE: 20190614: No upstream fix yet. (apo)
--
...
...