Hi fellow LTS contributors

I hope you do not mind me asking but there is one thing that I would
like to check.

When I look at this CVE that was previously postponed:

The information tells that the vulnerability my in fact not be in
freeimage at all.
For this I think "undetermined" tag is typically used instead of postponed.
Should I change?

I guess so, but since I'm not sure if it has any other implications I
want to check first.

We will clearly not be able to fix it in any case because we do not
have enough information to tell what the problem was in the first

While I'm at it I'm removing postponed tag for a few CVEs now, because
they are postponed until patches are available and now patches are
available in fedora.


// Ola

 --- Inguza Technology AB --- MSc in Information Technology ----
|  o...@inguza.com                    o...@debian.org            |
|  http://inguza.com/                Mobile: +46 (0)70-332 1551 |

Reply via email to