Re: Issue 54739 in oss-fuzz: apache-commons-io: Fuzzing build failure

2023-01-02 Thread Roman Wagner
If you have any > > questions, please create an issue at > > https://github.com/google/oss-fuzz/issues/new. > > > > **This bug will be automatically closed within a day once it is fixed.** > > > > -- > > You received this message because: > > 1. You w

Re: Correctly configuring Apache Commons components for oss-fuzz

2022-11-11 Thread Roman Wagner
Apache > > projects going forward, and other than that I believe there's not much > > other difference in terms of the end result (i.e. bug reports) that end > > up getting filed. > > > > Does that sound OK to you? Or did you have other concerns around the > > curre

Re: Correctly configuring Apache Commons components for oss-fuzz

2022-11-09 Thread Roman Wagner
ang do you have any ideas here? Best regards Roman On Tue, Nov 8, 2022 at 5:56 PM Mark Thomas wrote: > Thanks for the update. > > I'll wait for that PR to be resolved before taking any further action. > > Mark > > > On 08/11/2022 16:42, Roman Wagner wrote: > >

Re: Correctly configuring Apache Commons components for oss-fuzz

2022-11-08 Thread Roman Wagner
Mark >> > >> > >> > >> > [1] https://lists.apache.org/thread/53vwy3g8w3f8nydz7jvxm8snrqx7msln >> > >> > - >> > To unsubscribe, e-mail: dev-unsubscr...@commons.apache.org >> > For additional commands, e-mail: dev-h...@commons.apache.org >> > >> >> - >> To unsubscribe, e-mail: dev-unsubscr...@commons.apache.org >> For additional commands, e-mail: dev-h...@commons.apache.org >> >> -- Roman Wagner Application Security Engineer Code Intelligence Rheinwerkallee 6 53227 Bonn Amtsgericht Bonn HRB 23408 Geschäftsführer: Sergej Dechand, Dr. Khaled Yakdan

Re: [jxpath] reported CVE and path forward

2022-10-10 Thread Roman Wagner
; > >> > find problems in commons. So any findings would be identified as > a > > bug > > > >> and > > > >> > fix as applicable? > > > >> > > > > >> > > > > >> > Get Outlook for iOS<http

RE: Re: [jxpath] reported CVE and path forward

2022-10-10 Thread Roman Wagner
Hi all, I am working for Code Intelligence and we did our best to find a maintainer for the oss-fuzz project Unfortunately, we've have failed and got no feedback until now, but It seems to be an unmaintained project except for some typo fixes since some years. I am not sure yet to which mailing li

RE: Re: [jxpath] reported CVE and path forward

2022-10-10 Thread Roman Wagner
Hi all, I am working for Code Intelligence we did our best to find a maintainer for the oss-fuzz project. Unfortunately we've got no feedback until now, but It seems to be an unmaintained project except for some typo fixes since some years. I am not sure yet to which mailing list the bug report wa