Re: Additional 9pfs issue in qemu

2016-12-15 Thread Hugo Lefeuvre
Hi Ola, > I guess it depends on how large the memory leak is and how often it would > occur. > A small memory leak is not a security problem. But if it occurs often > and/or it is a very large thing seldom then it could cause DoS and > then it is a security problem. > > I do not have the details

Packet user activation

2016-12-15 Thread Cadre
Hi Debian-lts, A new Packet account has been created for you. Click the url below to activate your account and select a password! https://packet.freshdesk.com/register/uqPFpOf4dfw7OeULx3 If the above URL does not work try copying and pasting it into your browser. If you continue to have pr

Ticket Received - [SECURITY] [DLA 743-1] firefox-esr security update

2016-12-15 Thread Cadre
Dear Debian-lts, We would like to acknowledge that we have received your request and a ticket has been created. A support representative will be reviewing your request and will send you a personal response.(usually within 24 hours). To view the status of the ticket or add comments, please vis

RFC: Handling CVE-2014-9911 in ICU

2016-12-15 Thread Roberto C . Sánchez
Hello all. I am trying to wrap up the next upload of ICU and I wanted to get some additional thoughts on the change for CVE-2014-9911 [0]. The upstream ticket [1] was recently made public and it contains a proof of concept which I am using to verify my fix. Sadly, the upstream changes [2] (which