Merge ~mikesalvatore/ubuntu-cve-tracker:libjpeg into ubuntu-cve-tracker:master

Proposed by Mike Salvatore
Status: Merged
Merged at revision: 1d7b0358d0a39b19263f36f1ae9384f0afdcdc68
Proposed branch: ~mikesalvatore/ubuntu-cve-tracker:libjpeg
Merge into: ubuntu-cve-tracker:master
Diff against target: 218 lines (+42/-42)
5 files modified
active/CVE-2018-11213 (+5/-5)
active/CVE-2018-11214 (+5/-5)
active/CVE-2018-11813 (+11/-11)
active/CVE-2020-14152 (+11/-11)
active/CVE-2020-14153 (+10/-10)
Reviewer Review Type Date Requested Status
Steve Beattie Approve
Paulo Flabiano Smorigo Pending
Review via email: mp+398074@code.launchpad.net
To post a comment you must log in.
Revision history for this message
Steve Beattie (sbeattie) wrote :

LGTM, merged.

Thanks Claire Southwell and Mike!

review: Approve

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
1diff --git a/active/CVE-2018-11213 b/active/CVE-2018-11213
2index 5c86ebf..a3ddd4e 100644
3--- a/active/CVE-2018-11213
4+++ b/active/CVE-2018-11213
5@@ -23,7 +23,7 @@ CVSS:
6 nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
7
8 Patches_libjpeg6b:
9-upstream_libjpeg6b: needs-triage
10+upstream_libjpeg6b: needed
11 precise/esm_libjpeg6b: DNE
12 trusty_libjpeg6b: ignored (out of standard support)
13 trusty/esm_libjpeg6b: needed
14@@ -39,7 +39,7 @@ devel_libjpeg6b: needed
15
16 Patches_libjpeg-turbo:
17 upstream: https://github.com/libjpeg-turbo/libjpeg-turbo/commit/6709e4a0cfa44d4f54ee8ad05753d4aa9260cb91
18-upstream_libjpeg-turbo: needs-triage
19+upstream_libjpeg-turbo: released (1:1.3.1-12+deb8u1, 1:1.4.2-1)
20 precise/esm_libjpeg-turbo: released (1.1.90+svn733-0ubuntu4.5)
21 trusty_libjpeg-turbo: released (1.3.0-0ubuntu2.1)
22 trusty/esm_libjpeg-turbo: released (1.3.0-0ubuntu2.1)
23@@ -54,13 +54,13 @@ groovy_libjpeg-turbo: not-affected (1.5.2-0ubuntu5)
24 devel_libjpeg-turbo: not-affected (1.5.2-0ubuntu5)
25
26 Patches_libjpeg9:
27-upstream_libjpeg9: needs-triage
28+upstream_libjpeg9: released (1:9c-1)
29 precise/esm_libjpeg9: DNE
30 trusty_libjpeg9: DNE
31 trusty/esm_libjpeg9: DNE
32-xenial_libjpeg9: needs-triage
33+xenial_libjpeg9: needed
34 artful_libjpeg9: ignored (reached end-of-life)
35-bionic_libjpeg9: needs-triage
36+bionic_libjpeg9: needed
37 cosmic_libjpeg9: ignored (reached end-of-life)
38 disco_libjpeg9: not-affected (1:9c-2)
39 eoan_libjpeg9: not-affected (1:9c-2)
40diff --git a/active/CVE-2018-11214 b/active/CVE-2018-11214
41index 7230d24..7c4a31a 100644
42--- a/active/CVE-2018-11214
43+++ b/active/CVE-2018-11214
44@@ -24,7 +24,7 @@ CVSS:
45 nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
46
47 Patches_libjpeg6b:
48-upstream_libjpeg6b: needs-triage
49+upstream_libjpeg6b: needed
50 precise/esm_libjpeg6b: DNE
51 trusty_libjpeg6b: ignored (out of standard support)
52 trusty/esm_libjpeg6b: needed
53@@ -40,7 +40,7 @@ devel_libjpeg6b: needed
54
55 Patches_libjpeg-turbo:
56 upstream: https://github.com/libjpeg-turbo/libjpeg-turbo/commit/6709e4a0cfa44d4f54ee8ad05753d4aa9260cb91
57-upstream_libjpeg-turbo: needs-triage
58+upstream_libjpeg-turbo: released (1:1.3.1-12+deb8u1, 1:1.4.2-1)
59 precise/esm_libjpeg-turbo: released (1.1.90+svn733-0ubuntu4.5)
60 trusty_libjpeg-turbo: released (1.3.0-0ubuntu2.1)
61 trusty/esm_libjpeg-turbo: released (1.3.0-0ubuntu2.1)
62@@ -55,13 +55,13 @@ groovy_libjpeg-turbo: not-affected (1.5.2-0ubuntu5)
63 devel_libjpeg-turbo: not-affected (1.5.2-0ubuntu5)
64
65 Patches_libjpeg9:
66-upstream_libjpeg9: needs-triage
67+upstream_libjpeg9: released (1:9c-1)
68 precise/esm_libjpeg9: DNE
69 trusty_libjpeg9: DNE
70 trusty/esm_libjpeg9: DNE
71-xenial_libjpeg9: needs-triage
72+xenial_libjpeg9: needed
73 artful_libjpeg9: ignored (reached end-of-life)
74-bionic_libjpeg9: needs-triage
75+bionic_libjpeg9: needed
76 cosmic_libjpeg9: ignored (reached end-of-life)
77 disco_libjpeg9: not-affected (1:9c-2)
78 eoan_libjpeg9: not-affected (1:9c-2)
79diff --git a/active/CVE-2018-11813 b/active/CVE-2018-11813
80index e864d7c..5896d32 100644
81--- a/active/CVE-2018-11813
82+++ b/active/CVE-2018-11813
83@@ -16,23 +16,23 @@ CVSS:
84 nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
85
86 Patches_libjpeg6b:
87-upstream_libjpeg6b: needs-triage
88+upstream_libjpeg6b: needed
89 precise/esm_libjpeg6b: DNE
90 trusty_libjpeg6b: ignored (out of standard support)
91-trusty/esm_libjpeg6b: needs-triage
92-xenial_libjpeg6b: needs-triage
93-bionic_libjpeg6b: needs-triage
94+trusty/esm_libjpeg6b: needed
95+xenial_libjpeg6b: needed
96+bionic_libjpeg6b: needed
97 eoan_libjpeg6b: ignored (reached end-of-life)
98-focal_libjpeg6b: needs-triage
99-groovy_libjpeg6b: needs-triage
100-devel_libjpeg6b: needs-triage
101+focal_libjpeg6b: needed
102+groovy_libjpeg6b: needed
103+devel_libjpeg6b: needed
104
105 Patches_libjpeg-turbo:
106 upstream: https://github.com/libjpeg-turbo/libjpeg-turbo/commit/909a8cfc7bca9b2e6707425bdb74da997e8fa499
107-upstream_libjpeg-turbo: needs-triage
108+upstream_libjpeg-turbo: released (1:2.0.5-1)
109 precise/esm_libjpeg-turbo: needs-triage
110 trusty_libjpeg-turbo: ignored (out of standard support)
111-trusty/esm_libjpeg-turbo: needs-triage
112+trusty/esm_libjpeg-turbo: needed
113 xenial_libjpeg-turbo: needed
114 bionic_libjpeg-turbo: needed
115 eoan_libjpeg-turbo: not-affected (2.0.3-0ubuntu1.19.10.1)
116@@ -45,9 +45,9 @@ upstream_libjpeg9: released (9d)
117 precise/esm_libjpeg9: DNE
118 trusty_libjpeg9: DNE
119 trusty/esm_libjpeg9: DNE
120-xenial_libjpeg9: needs-triage
121+xenial_libjpeg9: needed
122 artful_libjpeg9: ignored (reached end-of-life)
123-bionic_libjpeg9: needs-triage
124+bionic_libjpeg9: needed
125 cosmic_libjpeg9: ignored (reached end-of-life)
126 disco_libjpeg9: ignored (reached end-of-life)
127 eoan_libjpeg9: ignored (reached end-of-life)
128diff --git a/active/CVE-2020-14152 b/active/CVE-2020-14152
129index 2bb5119..a327a75 100644
130--- a/active/CVE-2020-14152
131+++ b/active/CVE-2020-14152
132@@ -20,23 +20,23 @@ CVSS:
133 nvd: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
134
135 Patches_libjpeg6b:
136-upstream_libjpeg6b: needs-triage
137+upstream_libjpeg6b: needed
138 precise/esm_libjpeg6b: DNE
139 trusty_libjpeg6b: ignored (out of standard support)
140-trusty/esm_libjpeg6b: needs-triage
141-xenial_libjpeg6b: needs-triage
142-bionic_libjpeg6b: needs-triage
143+trusty/esm_libjpeg6b: needed
144+xenial_libjpeg6b: needed
145+bionic_libjpeg6b: needed
146 eoan_libjpeg6b: ignored (reached end-of-life)
147-focal_libjpeg6b: needs-triage
148-groovy_libjpeg6b: needs-triage
149-devel_libjpeg6b: needs-triage
150+focal_libjpeg6b: needed
151+groovy_libjpeg6b: needed
152+devel_libjpeg6b: needed
153
154 Patches_libjpeg-turbo:
155 upstream: https://github.com/libjpeg-turbo/libjpeg-turbo/commit/da2a27ef056a0179cbd80f9146e58b89403d9933
156-upstream_libjpeg-turbo: needs-triage
157+upstream_libjpeg-turbo: released (1:1.5.1-2+deb9u1, 1:1.5.2-2+den10u1)
158 precise/esm_libjpeg-turbo: needs-triage
159 trusty_libjpeg-turbo: ignored (out of standard support)
160-trusty/esm_libjpeg-turbo: needs-triage
161+trusty/esm_libjpeg-turbo: needed
162 xenial_libjpeg-turbo: needed
163 bionic_libjpeg-turbo: not-affected (1.5.2-0ubuntu5.18.04.4)
164 eoan_libjpeg-turbo: not-affected (2.0.3-0ubuntu1.19.10.1)
165@@ -49,8 +49,8 @@ upstream_libjpeg9: released (9d)
166 precise/esm_libjpeg9: DNE
167 trusty_libjpeg9: ignored (out of standard support)
168 trusty/esm_libjpeg9: DNE
169-xenial_libjpeg9: needs-triage
170-bionic_libjpeg9: needs-triage
171+xenial_libjpeg9: needed
172+bionic_libjpeg9: needed
173 eoan_libjpeg9: ignored (reached end-of-life)
174 focal_libjpeg9: not-affected (1:9d-1)
175 groovy_libjpeg9: not-affected (1:9d-1)
176diff --git a/active/CVE-2020-14153 b/active/CVE-2020-14153
177index e240361..afb1c13 100644
178--- a/active/CVE-2020-14153
179+++ b/active/CVE-2020-14153
180@@ -26,19 +26,19 @@ CVSS:
181 nvd: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
182
183 Patches_libjpeg6b:
184-upstream_libjpeg6b: needs-triage
185+upstream_libjpeg6b: needed
186 precise/esm_libjpeg6b: DNE
187 trusty_libjpeg6b: ignored (out of standard support)
188-trusty/esm_libjpeg6b: needs-triage
189-xenial_libjpeg6b: needs-triage
190-bionic_libjpeg6b: needs-triage
191+trusty/esm_libjpeg6b: needed
192+xenial_libjpeg6b: needed
193+bionic_libjpeg6b: needed
194 eoan_libjpeg6b: ignored (reached end-of-life)
195-focal_libjpeg6b: needs-triage
196-groovy_libjpeg6b: needs-triage
197-devel_libjpeg6b: needs-triage
198+focal_libjpeg6b: needed
199+groovy_libjpeg6b: needed
200+devel_libjpeg6b: needed
201
202 Patches_libjpeg-turbo:
203-upstream_libjpeg-turbo: needs-triage
204+upstream_libjpeg-turbo: not-affected
205 precise/esm_libjpeg-turbo: not-affected
206 trusty_libjpeg-turbo: ignored (out of standard support)
207 trusty/esm_libjpeg-turbo: not-affected
208@@ -54,8 +54,8 @@ upstream_libjpeg9: released (9d)
209 precise/esm_libjpeg9: DNE
210 trusty_libjpeg9: ignored (out of standard support)
211 trusty/esm_libjpeg9: DNE
212-xenial_libjpeg9: needs-triage
213-bionic_libjpeg9: needs-triage
214+xenial_libjpeg9: needed
215+bionic_libjpeg9: needed
216 eoan_libjpeg9: ignored (reached end-of-life)
217 focal_libjpeg9: not-affected (1:9d-1)
218 groovy_libjpeg9: not-affected (1:9d-1)

Subscribers

People subscribed via source and target branches