Hi, * Chris Lamb <la...@debian.org> [2009-07-29 14:26]: > Chris Lamb wrote: > > > Does not affect unstable (once 1.1-1 lands). > > Packages for stable-security are available at: > > http://people.debian.org/~lamby/539134/ > > I can't find any CVE numbers, but am not used to looking.
Thanks for pinging me on debconf to answer that :) As the webserver is bound to localhost in the default and the user explicitly has to bind it to another hostname + it isn't used in production environments I suggest going through stable-proposed-updates with that. Is that ok for you? Cheers Nico -- Nico Golde - http://www.ngolde.de - n...@jabber.ccc.de - GPG: 0xA0A0AAAA For security reasons, all text in this mail is double-rot13 encrypted.
pgpoOzNsH8cpo.pgp
Description: PGP signature