LTS report for January 2019

2019-02-04 Thread Lucas Kanashiro
Hi, In January I was allocated 4h and I carried 1h from December, and I spent the 5h doing the following: * phpmyadmin: - Backported patches to fix CVE-2018-19968 and CVE-2018-19970, tested them and uploaded the updated package. The DLA was properly sent [1]. - Initial attempt to triage CVE-201

LTS report for January 2019 - Abhijith PA

2019-02-02 Thread Abhijith PA
January 2019 was my 12th month as a Debian LTS paid contributor. I was assigned 12 hours and I spend all of them for the following: * libraw: There are 29 vulnerabilities reported against libraw. Almost all of them are results of fuzz testing. Marked CVE-2017-14348, CVE-2018-20337, CVE-2018