reassign 542784 nss thanks That bug needs to be fixed in nss (with more fixes because of blackhat); we updated nss to 3.12.3.1 in ubuntu everywhere as we believe that it's better to not do manual-cherry-picking for security sensitive software like nss.
I would suggest the same for debian, but i am not nss maintainer so thats beyond my powers ... if glandium or security team wants me to prepare such an update, I could do that after my vacation (will be back on 1st sep). On Fri, Aug 21, 2009 at 12:09:58PM +0200, Hannes von Haugwitz wrote: > Package: icedove > Severity: wishlist > > Hi, > > please upgrade to version 2.0.0.23 which fixes critical ssl bug: > > http://www.mozilla.org/security/known-vulnerabilities/thunderbird20.html#thunderbird2.0.0.23 > > Thanks, > > Hannes > > > - Alexander -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org