Re: [pkg-eucalyptus-maintainers] Bug#691900: gwt: CVE-2012-4563

2012-11-21 Thread Moritz Muehlenhoff
On Sat, Nov 03, 2012 at 10:23:18PM +0900, Charles Plessy wrote: > Le Fri, Nov 02, 2012 at 07:43:19AM +0100, Thomas Koch a écrit : > > Charles Plessy: > > > > > > In particular I do not know if the best resolution for this bug is to > > > upgrade to 2.5.0 or to patch, so I am reluctant to take acti

Re: [pkg-eucalyptus-maintainers] Bug#691900: gwt: CVE-2012-4563

2012-11-03 Thread Charles Plessy
Le Fri, Nov 02, 2012 at 07:43:19AM +0100, Thomas Koch a écrit : > Charles Plessy: > > > > In particular I do not know if the best resolution for this bug is to > > upgrade to 2.5.0 or to patch, so I am reluctant to take action by myself, > > worrying that I might complicate your work on Gerrit. >

Re: [pkg-eucalyptus-maintainers] Bug#691900: gwt: CVE-2012-4563

2012-11-01 Thread Thomas Koch
Charles Plessy: > Dear Thomas and Java team > > In http://bugs.debian.org/684453, you have suggested to transfer the gwt > package under the debian-java umbrella. We agreed, and action was delayed > by a technical problem on the Dpkg side. > > It is a bit embarassing to ping you with a grave bug

Re: [pkg-eucalyptus-maintainers] Bug#691900: gwt: CVE-2012-4563

2012-11-01 Thread Charles Plessy
Le Wed, Oct 31, 2012 at 07:47:07AM +0100, Moritz Muehlenhoff a écrit : > Package: gwt > Severity: grave > Tags: security > Justification: user security hole > > Please see > https://developers.google.com/web-toolkit/release-notes#Release_Notes_2_4_0 > under "Security vulnerability in GWT 2.4". >