[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#843268: jessie-pu: package nettle/2.7.1-5+deb8u2



lördag 5 november 2016 kl. 20:17:40 CET skrev du:
> On Sat, 2016-11-05 at 18:07 +0100, Magnus Holmgren wrote:
> > Here is a debdiff for a proposed upload to address CVE-2016-6489 ("RSA
> > code is vulnerable to cache sharing related attacks") in jessie, which
> > the Security Team thinks should be done but which doesn't warrant a DSA.
> 
> It appears that you've uploaded already; it would have been appreciated
> if you'd waited for an ack.
> 
> For one thing, I'd have at least queried:

Oh, terribly sorry. I read your ack of gnutls28, which I was Cc:d to, too 
quickly.

> For one thing, I'd have at least queried:
> 
> - -- Magnus Holmgren <holmgren@debian.org>  Sat, 06 Feb 2016 20:01:37 +0100
> + -- Magnus Holmgren <holmgren@debian.org>  Tue, 09 Feb 2016 20:57:42 +0100

Right, I apparently failed to check in the previous update in SVN right after 
the upload and must have accidentally touched the changelog timestamp. I'm 
pretty sure nothing more important is messed up.

-- 
Magnus Holmgren        holmgren@debian.org
Debian Developer 

Attachment: signature.asc
Description: This is a digitally signed message part.


Reply to: