Re: Bug#633870: CVE-2011-2684
- To: debian-printing@lists.debian.org
- Subject: Re: Bug#633870: CVE-2011-2684
- From: Didier Raboud <odyx@debian.org>
- Date: Sun, 07 Aug 2011 16:33:44 +0200
- Message-id: <j1m7o8$ote$1@dough.gmane.org>
- References: <20110714151842.15666.64244.reportbug@irma.knut.univention.de> <20110806182710.GA30096__9797.11655895716$1312655423$gmane$org@lupin.home.powdarrmonkey.net>
Jonathan Wiltshire wrote:
> Dear maintainer,
>
> Recently you fixed one or more security problems and as a result you
> closed this bug. These problems were not serious enough for a Debian
> Security Advisory, so they are now on my radar for fixing in the following
> suites through point releases:
>
> lenny (5.0.9)
Hi Jonathan, and thanks for this mail,
as far as I can see, the foo2zjs version as shipped in Lenny (current
oldstable) is _not_ affected by this bug. I would appreciate a second
thought on that, though (take a look at the /usr/bin/getweb script in the
binary package).
Cheers,
OdyX
Reply to: