Bug#792857: CVE-2014-3576

2015-08-14 Thread Salvatore Bonaccorso
Hi Emmanuel, On Fri, Aug 14, 2015 at 11:50:18AM +0200, Emmanuel Bourg wrote: > Le 14/08/2015 11:42, Salvatore Bonaccorso a écrit : > > > Any news on an update for sid->stretch as well? > > I can't do it before the end of the month. I'll combine the fix with an > update to the version 2.7. I see

Bug#792857: CVE-2014-3576

2015-08-14 Thread Emmanuel Bourg
Le 14/08/2015 11:42, Salvatore Bonaccorso a écrit : > Any news on an update for sid->stretch as well? I can't do it before the end of the month. I'll combine the fix with an update to the version 2.7.

Bug#792857: CVE-2014-3576

2015-08-14 Thread Salvatore Bonaccorso
Hi Emmanual, On Wed, Jul 22, 2015 at 03:24:45PM +0200, Emmanuel Bourg wrote: > The fix has been confirmed by an upstream developer: > > http://mail-archives.apache.org/mod_mbox/activemq-dev/201507.mbox/%3CCAKChZ-TruL3Sm3GW9B3Nr1L3fsxDH_X95rGhm85rfXh9_zVJfg%40mail.gmail.com%3E Any news on an upda

Bug#792857: CVE-2014-3576

2015-07-29 Thread Moritz Mühlenhoff
On Wed, Jul 22, 2015 at 03:24:45PM +0200, Emmanuel Bourg wrote: > The fix has been confirmed by an upstream developer: > > http://mail-archives.apache.org/mod_mbox/activemq-dev/201507.mbox/%3CCAKChZ-TruL3Sm3GW9B3Nr1L3fsxDH_X95rGhm85rfXh9_zVJfg%40mail.gmail.com%3E Could you prepare updated package

Bug#792857: CVE-2014-3576

2015-07-22 Thread Emmanuel Bourg
The fix has been confirmed by an upstream developer: http://mail-archives.apache.org/mod_mbox/activemq-dev/201507.mbox/%3CCAKChZ-TruL3Sm3GW9B3Nr1L3fsxDH_X95rGhm85rfXh9_zVJfg%40mail.gmail.com%3E -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe".

Bug#792857: CVE-2014-3576

2015-07-19 Thread Emmanuel Bourg
Le 19/07/2015 14:44, Moritz Muehlenhoff a écrit : > https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-3576 is scarce on > details, but per the fixed upstream release probably affects oldstable > and stable. I suspect this was fixed with this commit [1]. This modification was released with the

Bug#792857: CVE-2014-3576

2015-07-19 Thread Moritz Muehlenhoff
Source: activemq Severity: grave Tags: security https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-3576 is scarce on details, but per the fixed upstream release probably affects oldstable and stable. Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org w