This month I was allocated 13.5 hours. I used 11 hours in which I worked on the following: * [DLA 755-1] dcmtk security update I also tested the fix on Jessie and the patch I prepared was also used to update dcmtk in jessie-security. * [DLA 758-1] libgd2 security update * [DLA 767-1] curl security update It turned out the the vulnerable part was also buggy in a different way which needed test adjustments. Now the code is safe, just buggy. :-) * Prepared several patches for ming vulnerabilities because upstream development seems to be stalled. I'll publish those soon. Cheers, Balint
Attachment:
signature.asc
Description: OpenPGP digital signature