[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#514179: CVE-2009-0413: possible XSS issue



OoO Pendant  le repas  du mercredi 11  février 2009, vers  19:52, Holger
Levsen <holger@layer-acht.org> disait :

> On Mittwoch, 11. Februar 2009, Vincent Bernat wrote:
>> It should be vulnerable too. Would it be possible to upgrade to 0.2-alpha?

> Besides that it's in experimental atm, do you have a way to reduce it's 
> depends to something which is in etch/bpo or at least lenny?

0.2alpha should run fine in Etch if you reenable the following patch:
 fix-too-old-php-mail-mime.patch

The future 0.2stable will need more  work (even for lenny) since it uses
mdb.
-- 
printk("??? No FDIV bug? Lucky you...\n");
	2.2.16 /usr/src/linux/include/asm-i386/bugs.h

Attachment: pgpT62Az61rXc.pgp
Description: PGP signature


Reply to: