package: src:icu version: 52.1-7 severity: important Hi, I looking into a DSA for icu, but found that the fix for CVE-2014-6585 was not applied in the upload to unstable.
In particular, source/layout/LETableReference.h should have additional checks added but is unchanged. See: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-6585 Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org