Re: Bug#858539: should ca-certificates certdata.txt synchronize across all suites?

2018-01-08 Thread Brian May
Raphael Hertzog writes: > I think this mail went through the cracks as we haven't received a reply > from you so far. Can you let us know the status and whether we can help to > get the wheezy update out ? Hello Debian-LTS team: As we are lacking any response (yet) from Michael Shuler, I am won

Re: Wheezy update of poco?

2018-01-08 Thread Chris Lamb
Hi Jochen. > > Yes, I will continue along the wiki guide tomorrow evening. > > Great stuff. Let me know if you hit any difficulties - I can probably > take your aforementioned linked patch as-is and run with that if that > helps. Any update on this? :) Regards, -- ,''`. : :' :

Re: [SECURITY] [DLA 1234-1] gdk-pixbuf security update

2018-01-08 Thread Pascal Hambourg
Hello, Le 08/01/2018 à 15:55, Chris Lamb a écrit : Package: gdk-pixbuf Version: 2.26.1-1+deb7u7 CVE ID : CVE-2017-1000422 It was discovered that there were several integer overflows in gdk-pixbuf, a library to manipulate images for the GTK graphics toolkit. This could h

Re: Wheezy update of gifsicle?

2018-01-08 Thread Chris Lamb
Hi Herbert, > Hope that helps. The files are at: Thank you for this. I have uploaded it and announced it in DLA 1233-1. :) Regards, -- ,''`. : :' : Chris Lamb `. `'` la...@debian.org / chris-lamb.co.uk `-

Re: awstats / CVE-2017-1000501 / #885835

2018-01-08 Thread Chris Lamb
Hi Brian, > Here is my proposed patch against the wheezy version. The upstream > patches applied with no problem Looks good to me :) > except for a single hunk that makes a single white space change. Oh dear :) Best wishes, -- ,''`. : :' : Chris Lamb `. `'` la...@d

Re: Linux kernel security release for Wheezy/Debian7 for Meltdown/Spectre mitigation

2018-01-08 Thread Raphael Hertzog
Hello Rohit, On Sat, 06 Jan 2018, Rohit Yadav wrote: > I would like to request a Linux kernel security patch/package for Debian > "Wheezy" 7 (amd x86_64) for the Spectre/Meltdown security issues [1][2][3]. Please see https://lists.debian.org/debian-lts-announce/2018/01/msg4.html This only co