[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#515563: Please remove package mped

Package: mped
Version: 3.3.17-1
Severity: critical
Tags: lenny

(Note: I'm upstream author for the mped package).

Lenny has been released containing a version of the Minimum Profit text
editor that is from 2005 and that can cause severe information lossage due
to an incorrect handling of UTF-8 encoding.

An RC bug was filed (#514096) against lenny to suggest a package update or
deletion, but it was ignored and this dangerous version entered the stable

As there is nothing that can be done by now, I urge the archive masters to
delete this +4 year old, dangerous package.


Angel Ortega

Attachment: signature.asc
Description: Digital signature

Reply to: