We have tested the proposed patched version 2.4.7 against the current
release version 2.4.5 posted at the above launchpad link via bug
reproduction and general package installation process via standard cli
and via python bindings and have no adverse observations.
We have also tested against a pack
I removed the needs-packaging tag. Wasn't aware that it is only for new
packages.
** Tags removed: needs-packaging
--
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to tar in Ubuntu.
https://bugs.launchpad.net/bugs/1638922
Title:
Public bug reported:
CVE-2016-6321 path name extract bypass vulnerability is not patched in
stable releases of yakkety, xenial and other supported releases.
The maintainer appears to have only pushed the patch to zesty proposed.
Please push the patch for the stable releases as this bug could hav
3 matches
Mail list logo