[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#536147: linux-2.6: [regression] CVE-2009-0029 fixed in testing, but not unstable



notfound 536147 2.6.30-1
thanks


On Wed, 8 Jul 2009 01:05:03 +0200 Bastian Blank wrote:

> On Tue, Jul 07, 2009 at 11:00:31PM +0200, Francesco Poli (t1000) wrote:
> > According to the security tracker [1], CVE-2009-0029 is fixed in
> > testing, but not in unstable.
> 
> The security tracker is _no_ authorative source. This is fixed since
> some time.

I am well aware that the security tracker is _not_ the ultimate and
infallible source of information about Debian security.
My goal is to do what I can to improve its reliability and consistency
with other sources.

My intent in filing this bug report was two-fold:

 (a) if the tracker was right, I wanted to prevent the migration of a
vulnerable linux-2.6 that would have introduced a regression into
testing

 (b) if the tracker was wrong, I wanted to get confirmation that
linux-2.6/2.6.30-1 is already fixed (since I was not able to verify
that by myself, despite having tried), so that the tracker could be
updated

I am glad to see that we were in case (b)!  ;-)
Thanks to all the people involved in dealing with this bug report for
confirming that linux-2.6/2.6.30-1 is OK.

Have a nice day!

-- 
 New location for my website! Update your bookmarks!
 http://www.inventati.org/frx
..................................................... Francesco Poli .
 GnuPG key fpr == C979 F34B 27CE 5CD8 DC12  31B5 78F4 279B DD6D FCF4

Attachment: pgp0LXrCAhTnA.pgp
Description: PGP signature


Reply to: