close 559831 stop On Sat, Dec 12, 2009 at 6:52 PM, Michael Gilbert <michael.s.gilb...@gmail.com> wrote: > i don't think that this has been resolved since there are no depends on > libtool in your control file.
On closer investigation It turns out that Debian xmlsec1 is not affected by CVE-2009-3736 since we don't enable dynamic crypto module loading (--enable-crypto_dl). Thanks for your attention. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org