Control: retitle -1 pu: gpsd/3.6-4+deb7u1 Control: tags -1 + confirmed On Fri, 2013-05-03 at 21:55 +0200, Bernd Zeimetz wrote: > Please unblock package gpsd as it fixes CVE-2013-2038 > > The bug is not *that* bad, so if you don't have the time to get it in > before wheezy is released, I'll prepare an update for the first point > release, no problem at all.
It was /far/ too late to get in before the release at that point, so... > +gpsd (3.6-5) unstable; urgency=medium > + > + * [818fb0a6] Fixing two security bugs in gpsd > + - one triggered by malformed NMEA packets, making gpsd crash > + - the other one is a possible DOS in the AIS parser, > + CVE-2013-2038 > + Thanks to Salvatore Bonaccorso (Closes: #706665) Please use "3.6-4+deb7u1" as the version and "wheezy" as the upload target. Regards, Adam -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org