Bug#731237:

2014-03-25 Thread Mathieu Malaterre
On Mon, Mar 24, 2014 at 11:25 PM, Julien Cristau wrote: > On Wed, Mar 19, 2014 at 08:59:44 +0100, Mathieu Malaterre wrote: > >> Will be fixed when 1.5.2 comes out. > > Is there an ETA? It'd be nice to not wait too long to fix this bug, as > currently this blocks the transition of openjpeg and its

Bug#731237:

2014-03-24 Thread Julien Cristau
On Wed, Mar 19, 2014 at 08:59:44 +0100, Mathieu Malaterre wrote: > Will be fixed when 1.5.2 comes out. Is there an ETA? It'd be nice to not wait too long to fix this bug, as currently this blocks the transition of openjpeg and its rdeps to jessie. Cheers, Julien signature.asc Description: Dig

Bug#731237:

2014-03-19 Thread Mathieu Malaterre
Control: forwarded -1 http://code.google.com/p/openjpeg/issues/detail?id=297 Control: tag -1 fixed-upstream pending Will be fixed when 1.5.2 comes out. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian

Bug#731237: openjpeg: CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 CVE-2013-6054

2013-12-03 Thread Raphael Geissert
Hi, There are also some other issues that are specific to 1.5.1 (or at least they do not affect 1.3): CVE-2013-6053: information leaks CVE-2013-6887: DoS All the patches will be available as soon as I forward to oss-sec the messages I sent to the distros list. Cheers, -- Raphael Geissert - Deb

Bug#731237: openjpeg: CVE-2013-1447 CVE-2013-6045 CVE-2013-6052 CVE-2013-6054

2013-12-03 Thread Salvatore Bonaccorso
Package: openjpeg Severity: grave Tags: security upstream patch Hi This is to track the issues released with DSA-2808-1 for openjpeg in the BTS. See http://lists.debian.org/debian-security-announce/2013/msg00222.html http://www.debian.org/security/2013/dsa-2808 Regards, Salvatore -- To UNS