[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#486328: libexiv2: Bug#486328: CVE-2008-2696: DoS via metadata in images



On Mon, 16 Jun 2008 02:06:40 pm Mark Purcell wrote:
> found 486328 0.16-1
> fixed 486328 0.17-1
> forwarded 486328 http://dev.robotbattle.com/bugs/view.php?id=0000546
> thanks
>
> On Sun, 15 Jun 2008, Steffen Joeris wrote:
> > Hi,
> > the following CVE (Common Vulnerabilities & Exposures) id was
> > published for exiv2.
>
> Thanks Steffen,
>
> I have already uploaded the fixed upstream to experimental, and awaiting
> clearance from debian-release to upload to unstable, which will fix this
> issue for lenny and sid. I do not propose to upload a fixed package to
> testing-updates.
>
> http://lists.debian.org/debian-release/2008/06/msg00231.html
In this case, testing-security (which gets copied to testing-proposed 
automagically) would be the right way, but the issue is not severe enough, so 
I agree with your opinion.

Thanks for your work.
Cheers
Steffen

Attachment: signature.asc
Description: This is a digitally signed message part.


Reply to: