On Thu, Feb 15, 2007 at 10:39:16AM +0100, Ralf Hildebrandt wrote:
> 3.1.8 is a major bug-fix release, including a potential DoS.  The major
> highlights are:

> - bug 5318: fix for CVE-2007-0451: possible DoS due to incredibly
>   long URIs found in the message content.
> - bug 5240: disable perl module usage in update channels unless
>   --allowplugins is specified

These fixes have been applied in 3.1.7-2 which is awaiting propogation
to testing.

3.1.8 will be uploaded later.

-- 
Duncan Findlay

Attachment: pgphc9cxHRecV.pgp
Description: PGP signature

Reply via email to