Hi Dne Sat, 5 Jan 2013 13:33:41 +0100 Salvatore Bonaccorso <car...@debian.org> napsal(a):
> Hi Michal > > On Fri, Jan 04, 2013 at 03:55:13PM +0100, Moritz Muehlenhoff wrote: > > Package: rpm > > Severity: grave > > Tags: security > > Justification: user security hole > > > > This was assigned CVE-2012-6088: > > http://rpm.org/gitweb?p=rpm.git;a=commitdiff;h=3d74c43e7424bc8bf95f5e031446ecb6b08381e8 > > I have checked, the patch seems to apply to both version in testing > and unstable as it is. Attached are the two debdiffs. > > I have seen you are in the LowNMU and the package maintained in > collab-maint. I can do a NMU in case you have not the time to prepare > the upload. The diff looks okay, so feel free to go ahead (it would be great if you can commit that to collab-maint as well). I probably won't have time earlier than sometimes in second half of next week. -- Michal Čihař | http://cihar.com | http://blog.cihar.com
signature.asc
Description: PGP signature