On Fri, Apr 07, 2006 at 10:47:44AM +0100, Stephen Gran wrote: > I generally don't like to NMU new upstream versions, but I see no > activity on a security bug in a couple of weeks, so I thought I would > ask.
Please don't upload until the current version has reached testing. freeradius is among the many packages currently tied into the libmysqlclient ABI transition, which is a monster to manage -- getting 200 packages unblocked and into etch needs to take precedence over one RC bug, security or otherwise. FWIW, I'm not convinced this bug warrants grave severity anyway; unless the crasher bug allows arbitrary code execution as well, it doesn't seem like this is really a big issue given that the radius clients shouldn't normally be under the control of an attacker? -- Steve Langasek Give me a lever long enough and a Free OS Debian Developer to set it on, and I can move the world. [EMAIL PROTECTED] http://www.debian.org/
signature.asc
Description: Digital signature