[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#600328: unblock: monkeysphere/0.31-3



Package: release.debian.org
Severity: normal
User: release.debian.org@packages.debian.org
Usertags: freeze-exception

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello, release team.  I would like to request a freeze-exception for
the monkeysphere package.

A recently filed bug (#600304) was found to actually be a critical
security flaw, whereby a malicious user could coax arbitrary code
execution by the monkeysphere system user.  We promptly fixed the
problem and uploaded a patch to the 0.31 release (0.31-3).

The 0.31-2 release also fixed a release critical FTBFS (#591118).  The
combined changeset is very small and just deals with fixing these two
serious issues.

Thank you very much, and please let me know if you have any questions.

unblock monkeysphere/0.31-3

- -- System Information:
Debian Release: squeeze/sid
  APT prefers testing
  APT policy: (500, 'testing'), (200, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 2.6.32-3-686 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
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=AMsX
-----END PGP SIGNATURE-----



Reply to: