Hi Guido, > Just for the record: upstream's fix is in 0.9.0 already.
Ok, I've updated the tracker. > BTW Does tagging > the bugs as found/notfound update the affected versions at > > https://bugzilla.redhat.com/show_bug.cgi?id=693391 We don't update the Red Hat bugzilla, no :-) Did you mean http://security-tracker.debian.org/tracker/CVE-2011-1486 ? If you want to update version-specific entries (like "Squeeze is not affected, since the code isn't there yet") simply use http://security-tracker.debian.org/tracker/data/report Alternatively we can also give you write access to the Debian Security Tracker as described here: http://svn.debian.org/wsvn/secure-testing/doc/narrative_introduction?op=file&rev=0&sc=0 Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org