Hi,
* Yaroslav Halchenko <[EMAIL PROTECTED]> [2007-08-16 03:53]:
> priority 438187 normal

it needs to be severity :)

[...] 
> Also, etch's version remains prone to this issue as well as others
> reported. The problem is that patch-picking between 0.7.5-2 (in etch)
> and 0.8.1 would not result in a proper fix anyways.

Why not?

[...] 
> I would appreciate other examples of injection (remote) than the one
> given in CVE

I am not here to piss you off and report vulns where none is 
there. If you think you fixed it, fine, just include the CVE 
id in your changelog and everyone knows ;-P
Cheers
Nico
-- 
Nico Golde - http://ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.

Attachment: pgpOxWeuLEvov.pgp
Description: PGP signature

Reply via email to