On Wed, Sep 19, 2012 at 17:30:53 +0200, Moritz Muehlenhoff wrote: > On Fri, Sep 14, 2012 at 05:23:42PM +0200, Moritz Muehlenhoff wrote: > > Hi Ari, > > > > On Mon, Aug 20, 2012 at 03:16:50PM +0200, Moritz Muehlenhoff wrote: > > > On Mon, Aug 20, 2012 at 03:04:13PM +0200, Moritz Muehlenhoff wrote: > > > > Package: gimp > > > > Severity: grave > > > > Tags: security > > > > Justification: user security hole > > > > > > > > Please see https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-3403 > > > > for details > > > > and patches. > > > > > > And another issue: > > > https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-3481 > > > > While this is fixed sid, it's still open in Wheezy, since testing is frozen. > > > > You need to either ask for an unblock (likely not welcome at this point of > > the freeze) or prepare an upload for testing-proposed-updates with the > > security fixes only. > > The interdiff between 2.8.0 and 2.8.2 is too big and introduces an ABI change. > > Proposed patch for tpu attached. > Actually I unblocked it, the ABI change involves functions that are new in 2.8.0, so should hopefully not break anything, and the diff looked sane other than that bit. Sorry for the extra work.
Cheers, Julien
signature.asc
Description: Digital signature