summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorAdrian Bunk <bunk@debian.org>2021-12-29 23:37:22 +0200
committerAdrian Bunk <bunk@debian.org>2021-12-29 23:37:22 +0200
commit6126e07e911d8e2b75081ab274123d46a39e1608 (patch)
treef442ebb8f8e77510e6702349fc16864b791671b5
parentad003e434e5871bc27793ce7c6c773abed1541f1 (diff)
Reserve DLA-2868-1 for advancecomp
-rw-r--r--data/CVE/2018.list1
-rw-r--r--data/CVE/2019.list3
-rw-r--r--data/DLA/list3
-rw-r--r--data/dla-needed.txt2
4 files changed, 3 insertions, 6 deletions
diff --git a/data/CVE/2018.list b/data/CVE/2018.list
index 804fe3adb5..f4aa2b4fd9 100644
--- a/data/CVE/2018.list
+++ b/data/CVE/2018.list
@@ -53031,7 +53031,6 @@ CVE-2018-1057 (On a Samba 4 AD DC the LDAP server in all versions of Samba from
CVE-2018-1056 (An out-of-bounds heap buffer read flaw was found in the way advancecom ...)
{DLA-1702-1 DLA-1281-1}
- advancecomp 2.1-1 (bug #889270)
- [stretch] - advancecomp <no-dsa> (Minor issue, can be fixed via point release)
NOTE: https://sourceforge.net/p/advancemame/bugs/259/
NOTE: https://github.com/amadvance/advancecomp/commit/7deeafc02b29cc51d51079e66f4f43f986ff9cc5
CVE-2018-1055
diff --git a/data/CVE/2019.list b/data/CVE/2019.list
index d6f6e77b20..3de53dfc3c 100644
--- a/data/CVE/2019.list
+++ b/data/CVE/2019.list
@@ -32418,7 +32418,6 @@ CVE-2019-9211 (There is a reachable assertion abort in the function write_long_s
CVE-2019-9210 (In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer ...)
{DLA-1702-1}
- advancecomp 2.1-2 (low; bug #923416)
- [stretch] - advancecomp <no-dsa> (Minor issue)
NOTE: https://sourceforge.net/p/advancemame/bugs/277/
NOTE: Fixed by https://github.com/amadvance/advancecomp/commit/fcf71a89265c78fc26243574dda3a872574a5c02
CVE-2019-9209 (In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the ASN.1 BER and rel ...)
@@ -34737,7 +34736,6 @@ CVE-2019-8384
RESERVED
CVE-2019-8383 (An issue was discovered in AdvanceCOMP through 2.1. An invalid memory ...)
- advancecomp 2.1-2.1 (bug #928730)
- [stretch] - advancecomp <no-dsa> (Minor issue)
[jessie] - advancecomp <ignored> (Minor issue)
NOTE: https://sourceforge.net/p/advancemame/bugs/272/
NOTE: https://github.com/amadvance/advancecomp/commit/78a56b21340157775be2462a19276b4d31d2bd01
@@ -34751,7 +34749,6 @@ CVE-2019-8380 (An issue was discovered in Bento4 1.5.1-628. A NULL pointer deref
NOT-FOR-US: Bento4
CVE-2019-8379 (An issue was discovered in AdvanceCOMP through 2.1. A NULL pointer der ...)
- advancecomp 2.1-2.1 (bug #928729)
- [stretch] - advancecomp <no-dsa> (Minor issue)
[jessie] - advancecomp <ignored> (Minor issue)
NOTE: https://sourceforge.net/p/advancemame/bugs/271/
NOTE: https://github.com/amadvance/advancecomp/commit/7894a6e684ce68ddff9f4f4919ab8e3911ac8040
diff --git a/data/DLA/list b/data/DLA/list
index ee8c82b13b..bd103af8c1 100644
--- a/data/DLA/list
+++ b/data/DLA/list
@@ -1,3 +1,6 @@
+[29 Dec 2021] DLA-2868-1 advancecomp - security update
+ {CVE-2018-1056 CVE-2019-8379 CVE-2019-8383 CVE-2019-9210}
+ [stretch] - advancecomp 1.20-1+deb9u1
[29 Dec 2021] DLA-2857-2 postgis - regression update
[stretch] - postgis 2.3.1+dfsg-2+deb9u2
[29 Dec 2021] DLA-2867-1 spip - security update
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index e93dc34dde..f2a05b4b9e 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -13,8 +13,6 @@ To make it easier to see the entire history of an update, please append notes
rather than remove/replace existing ones.
--
-advancecomp (Adrian Bunk)
---
agg (Adrian Bunk)
--
ansible (Lee Garrett)

© 2014-2024 Faster IT GmbH | imprint | privacy policy