[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: squeeze update of libsndfile?



Hi,

Raphael Hertzog wrote:

> the Debian LTS team would like to fix the security issues which are
> currently open in the Squeeze version of libsndfile:
> https://security-tracker.debian.org/tracker/CVE-2014-9756
> https://security-tracker.debian.org/tracker/CVE-2015-7805
> https://security-tracker.debian.org/tracker/CVE-2015-8075
> (and possibly CVE-2014-9496 too which was ignored last time
> due to being a minor issue)

CVE-2015-8075 has been writhdrawn.

I have patches against version 1.0.25 for the other three.

Unfortunately, my 1024 bit GPG key has been dropped from the Debian
keyring and I have not got around to generating and distributing a
new key yet.

> Would you like to take care of this yourself?

Due to not having a current key, I don't think I can. However, I am
more than happy to work with someone else to get this sorted out.

Cheers,
Erik
-- 
----------------------------------------------------------------------
Erik de Castro Lopo
http://www.mega-nerd.com/


Reply to: