Re: Wheezy update of apache2?

2017-06-20 Thread Stefan Fritsch
Hi Raphael, On Tuesday, 20 June 2017 16:38:12 CEST Raphael Hertzog wrote: > The Debian LTS team would like to fix the security issues which are > currently open in the Wheezy version of apache2: > https://security-tracker.debian.org/tracker/CVE-2017-3167 > https://security-tracker.debian.org/track

Re: Wheezy update of c-ares?

2017-06-20 Thread Gregor Jasny
Hello Raphael and LTS team, I am on holidays without access to a Debian machine and my keys until June 25th. If you have time and resources please go on and even fix unstable. In case you do, please upload your git repo changes to the collab-maint gbp based c-ares repo. For the last c-ares releas

About the security issues affecting postgresql-pljava in Wheezy

2017-06-20 Thread Raphael Hertzog
Hello Christoph & Peter, The Debian LTS team recently reviewed the security issue(s) affecting your package in Wheezy: https://security-tracker.debian.org/tracker/CVE-2016-0767 https://security-tracker.debian.org/tracker/CVE-2016-0768 https://security-tracker.debian.org/tracker/CVE-2016-2192 We d

About the security issues affecting ruby1.9.1 and ruby1.8 in Wheezy

2017-06-20 Thread Raphael Hertzog
Hello ruby maintainers, The Debian LTS team recently reviewed the security issue(s) affecting ruby1.8 and ruby1.9.1 in Wheezy: https://security-tracker.debian.org/tracker/CVE-2015-9096 We decided that we would not prepare a wheezy security update because the issue assumes that malicious content c

Wheezy update of apache2?

2017-06-20 Thread Raphael Hertzog
Hello Arno & Stefan, The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of apache2: https://security-tracker.debian.org/tracker/CVE-2017-3167 https://security-tracker.debian.org/tracker/CVE-2017-3169 https://security-tracker.debian.org/tracker/

Wheezy update of c-ares?

2017-06-20 Thread Raphael Hertzog
Hello Gregor, The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of c-ares: https://security-tracker.debian.org/tracker/CVE-2017-1000381 Would you like to take care of this yourself? If yes, please follow the workflow we have defined here: ht

Re: Wheezy update of libffi?

2017-06-20 Thread Matthias Klose
On 20.06.2017 14:30, Raphael Hertzog wrote: > Hello Matthias, > > The Debian LTS team would like to fix the security issue which is > currently open in the Wheezy version of libffi: > https://security-tracker.debian.org/tracker/CVE-2017-1000376 > > Would you like to take care of this yourself? >

Wheezy update of libffi?

2017-06-20 Thread Raphael Hertzog
Hello Matthias, The Debian LTS team would like to fix the security issue which is currently open in the Wheezy version of libffi: https://security-tracker.debian.org/tracker/CVE-2017-1000376 Would you like to take care of this yourself? If yes, please follow the workflow we have defined here: ht

Wheezy update of exim4?

2017-06-20 Thread Raphael Hertzog
Hello Andreas, The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of exim4: https://security-tracker.debian.org/tracker/CVE-2017-1000369 Would you like to take care of this yourself? If yes, please follow the workflow we have defined here: ht

Re: Wheezy update of graphite2?

2017-06-20 Thread Rene Engelhard
Hi, On Tue, Jun 20, 2017 at 12:56:03PM +0200, Rene Engelhard wrote: > On Tue, Jun 20, 2017 at 12:16:17PM +0200, Raphael Hertzog wrote: > > The Debian LTS team would like to fix the security issues which are > > currently open in the Wheezy version of graphite2: > > https://security-tracker.debian.

Re: Wheezy update of graphite2?

2017-06-20 Thread Rene Engelhard
Hi, On Tue, Jun 20, 2017 at 12:16:17PM +0200, Raphael Hertzog wrote: > The Debian LTS team would like to fix the security issues which are > currently open in the Wheezy version of graphite2: > https://security-tracker.debian.org/tracker/source-package/graphite2 > > Last time we had issues, it lo

Wheezy update of graphite2?

2017-06-20 Thread Raphael Hertzog
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of graphite2: https://security-tracker.debian.org/tracker/source-package/graphite2 Last time we had issues, it looks like we switched to a new upstream release in jessie an

Wheezy update of icedove?

2017-06-20 Thread Raphael Hertzog
Dear maintainer(s), The Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of icedove: https://security-tracker.debian.org/tracker/source-package/icedove I expect that Guido will take care of this by switching to a newer upstream version. Is that