reopen 560953 thanks On Mon, 25 Jan 2010 15:24:10 +0000, Debian Bug Tracking System wrote: > This is an automatic notification regarding your Bug report > which was filed against the smart package: > > #560953: CVE-2009-3560 and CVE-2009-3720 denial-of-services > > It has been closed by Free Ekanayaka
hi, this update only corrected cve-2009-3720. please see links in original message or expat package for the patch for cve-2009-3560. note that the more robust solution would be to use the system celementree package, rather than embedding it. note that elementree and pexpect are also embedded, which should be fixed. mike -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org