On Sat, Dec 08, 2012 at 11:32:57AM +0100, Didier Raboud wrote:
> Le samedi, 8 décembre 2012 09.12:20, Yves-Alexis Perez a écrit :
> > On sam., 2012-12-08 at 01:58 +0100, Didier 'OdyX' Raboud wrote:
> > >
> > > I propose to get CVE-2012-5519 (#692791) fixed with the attached debdiff.
> > >
> > To be honest, considering how invasive the patch is, I'd like it to stay
> > a bit in unstable. There already have been few correction in sid, so in
> > case there are more, it's better to include the relevant bits at first.
>
> Sure! My intent was just to make the 1.4.4 backport of the patch public, not
> necessarily to have it released immediately.
>
> That said, who triggers the re-examination of the patch for security release?
AFAICS can there haven't been any regressions, can we should go ahead with
the update now.
Didier, can you upload to security-master, please?
Cheers,
Moritz
--
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]