Processed: Re: [Secure-testing-team] Bug#700164: src:webkit: first pile of 2013 CVEs

2013-02-09 Thread Debian Bug Tracking System
Processing control commands: > severity -1 important Bug #700164 [src:webkit] src:webkit: first pile of 2013 CVEs Severity set to 'important' from 'grave' -- 700164: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=700164 Debian Bug Tracking System Contact ow...@bugs.debian.org with problems -

Bug#700164: [Secure-testing-team] Bug#700164: src:webkit: first pile of 2013 CVEs

2013-02-09 Thread Michael Gilbert
control: severity -1 important > Please verify which of them (if any) actually apply to Debian's version > of webkit. All of the appear to apply to some kind of memory corruption > or access restriction bypass which makes them good candidates. If they > turn out not to pose a risk for the user, pl

Bug#700164: src:webkit: first pile of 2013 CVEs

2013-02-09 Thread Helmut Grohne
Package: src:webkit Severity: grave Tags: security Justification: user security hole Dear webkit maintainers, On behalf of the security team I am creating a bug for the following CVE identifiers supposedly affecting webkit. CVE-2013-0948 CVE-2013-0949 CVE-2013-0950 CVE-2013-0951 CVE-2013-0952 CV