On Sat, 2005-08-27 at 11:42 +0100, Steve Kemp wrote: > On Sat, Aug 27, 2005 at 12:27:51PM +0200, Martin Schulze wrote: > > > Thanks a lot for the report. This is CAN-2005-2655. > > > > > The bug affects 1.5.3-1.1 sarge/etch/sid and 1.8.1-2 in experimental, > > > and should be easy to fix: Just add setgid(getgid()) before the > > > execvp(). I tested the attached patch briefly and verified that it > > > builds and prevents this bug. > > > > Steve, could you take care of sid and experimental packages if Joy > > is too busy? > > Certainly. Once the advisory is out I can make an upload if Joy > hasn't already made one. >
I can also do an upload; Joy already said I should comaintain, I've just been waiting for racke to do a new courier upload so that I can actually use maildrop (I have new maildrop packages in experimental that're just rotting away, waiting). Speaking of racke, has anyone checked whether courier-maildrop needs the same patch? Andres Salomon <[EMAIL PROTECTED]>
signature.asc
Description: This is a digitally signed message part