On Sat, 2005-08-27 at 11:42 +0100, Steve Kemp wrote:
> On Sat, Aug 27, 2005 at 12:27:51PM +0200, Martin Schulze wrote:
> 
> > Thanks a lot for the report.  This is CAN-2005-2655.
> > 
> > > The bug affects 1.5.3-1.1 sarge/etch/sid and 1.8.1-2 in experimental,
> > > and should be easy to fix: Just add setgid(getgid()) before the
> > > execvp(). I tested the attached patch briefly and verified that it
> > > builds and prevents this bug.
> > 
> > Steve, could you take care of sid and experimental packages if Joy
> > is too busy?
> 
>   Certainly.  Once the advisory is out I can make an upload if Joy
>  hasn't already made one.
> 

I can also do an upload; Joy already said I should comaintain, I've just
been waiting for racke to do a new courier upload so that I can actually
use maildrop (I have new maildrop packages in experimental that're just
rotting away, waiting).

Speaking of racke, has anyone checked whether courier-maildrop needs the
same patch?





Andres Salomon <[EMAIL PROTECTED]>

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to