Bug#753470: libspring-java: CVE-2014-0225

2014-09-08 Thread Stephen Nelson
On Sun, Sep 7, 2014 at 12:34 PM, Yves-Alexis Perez wrote: > On sam., 2014-09-06 at 21:38 -0700, tony mancill wrote: > > On 09/06/2014 11:36 AM, Salvatore Bonaccorso wrote: > > > Hi Tony, > > > > > > On Sat, Sep 06, 2014 at 08:50:24AM -0700, tony mancill wrote: > > >> On Wed, 02 Jul 2014 10:36:55

Bug#753470: libspring-java: CVE-2014-0225

2014-09-07 Thread Yves-Alexis Perez
On sam., 2014-09-06 at 21:38 -0700, tony mancill wrote: > On 09/06/2014 11:36 AM, Salvatore Bonaccorso wrote: > > Hi Tony, > > > > On Sat, Sep 06, 2014 at 08:50:24AM -0700, tony mancill wrote: > >> On Wed, 02 Jul 2014 10:36:55 +0200 Moritz Muehlenhoff > >> wrote: > >>> Package: libspring-java > >

Bug#753470: libspring-java: CVE-2014-0225

2014-09-06 Thread tony mancill
On 09/06/2014 11:36 AM, Salvatore Bonaccorso wrote: > Hi Tony, > > On Sat, Sep 06, 2014 at 08:50:24AM -0700, tony mancill wrote: >> On Wed, 02 Jul 2014 10:36:55 +0200 Moritz Muehlenhoff >> wrote: >>> Package: libspring-java >>> Severity: grave >>> Tags: security >>> Justification: user security h

Bug#753470: libspring-java: CVE-2014-0225

2014-09-06 Thread Salvatore Bonaccorso
Hi Tony, On Sat, Sep 06, 2014 at 08:50:24AM -0700, tony mancill wrote: > On Wed, 02 Jul 2014 10:36:55 +0200 Moritz Muehlenhoff > wrote: > > Package: libspring-java > > Severity: grave > > Tags: security > > Justification: user security hole > > > > Hi, > > please see http://www.gopivotal.com/sec

Bug#753470: libspring-java: CVE-2014-0225

2014-09-06 Thread tony mancill
On Wed, 02 Jul 2014 10:36:55 +0200 Moritz Muehlenhoff wrote: > Package: libspring-java > Severity: grave > Tags: security > Justification: user security hole > > Hi, > please see http://www.gopivotal.com/security/cve-2014-0225 Hello, I have uploaded a a patched version (thanks Stephen!) to unst

Bug#753470: libspring-java: CVE-2014-0225

2014-07-02 Thread Moritz Muehlenhoff
Package: libspring-java Severity: grave Tags: security Justification: user security hole Hi, please see http://www.gopivotal.com/security/cve-2014-0225 Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact l