> Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest posting a debdiff for this issue.
I am not an Ubuntu user (I reported this bug after fixing these vulnerabilities in Debian, to be helpful to our downstream distribution), so I'm afraid I'm not going to take on Ubuntu package maintenance. I asked for a new maintainer for Tremulous in Debian, and nobody volunteered, so I have now arranged for Tremulous to be removed from Debian testing/unstable. As a result, it will not be in Debian 7.0, unless someone re-uploads it within the next 2-4 weeks and takes responsibility for it. If nobody from the Ubuntu community intends to take responsibility for securing the Tremulous packages, I would recommend removing these packages from Ubuntu as well. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/970819 Title: multiple security vulnerabilities To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/tremulous/+bug/970819/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs