LTS Report for November 2017

2017-12-02 Thread Roberto C . Sánchez
For November I spent 32.5 hours on the following: - Documentation on reproducing bugs with ASAN - tomcat7: regression update - graphicsmagick: CVE-2017-16669, CVE-2017-13134, CVE-2016-16547; prepared package update - imagemagick: CVE-2017-16546; prepared package update - tiff/tiff3: CVE-2017-993

Re: November Report

2017-12-02 Thread Roberto C . Sánchez
Hi Brian, On Tue, Nov 21, 2017 at 08:12:16AM +1100, Brian May wrote: > In November I spent my 10 hours mainly working on CVE-2017-9935 / > tiff. I have understood the problem and I have changes that should fix > the problem now, that I am currently testing. A multi image tiff > function can have m

Wheezy update of tor?

2017-12-02 Thread Chris Lamb
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of tor: https://security-tracker.debian.org/tracker/source-package/tor Would you like to take care of this yourself? If yes, please follow the workflow we have defined her