Re: BIND 9.3.4-2 backport of 9.4.1's fix

2007-05-01 Thread Florian Weimer
* LaMont Jones: > Here's a diff that backports the security fix in bind 9.4.1 to bind > 9.3.4. I dug around a bit and found no CVE for it yet... According to ISC, it's CVE-2007-2241. Versions prior to 9.4.0 are not listed as affected, though. I'm not sure if this patch is required at all. --

Re: BIND 9.3.4-2 backport of 9.4.1's fix

2007-05-01 Thread LaMont Jones
CVE-2007-2241 On Mon, Apr 30, 2007 at 06:37:36PM -0600, LaMont Jones wrote: > Here's a diff that backports the security fix in bind 9.4.1 to bind > 9.3.4. I dug around a bit and found no CVE for it yet... > > lamont > > --- orig/CHANGES > +++ mod/CHANGES > @@ -1,3 +1,5 @@ > +2172.[bug]

Re: [SECURITY] [DSA 1285-1] New wordpress packages fix multiple vulnerabilities

2007-05-01 Thread Michael Leibowitz
The DSA incorrectly identifies etch as the unstable distribution. On Tue, 2007-05-01 at 20:03 +0200, Noah Meyerhans wrote: [snip...snip] > For the testing and unstable distributions (lenny and etch, > respectively), these issues have been fixed in version 2.1.3-1 -- To UNSUBSCRIBE, email to [E

Re: [SECURITY] [DSA 1285-1] New wordpress packages fix multiple vulnerabilities

2007-05-01 Thread Noah Meyerhans
On Tue, May 01, 2007 at 11:18:22AM -0700, Michael Leibowitz wrote: > The DSA incorrectly identifies etch as the unstable distribution. > Yeah, my fault. The web site will have it listed correctly, of course. noah signature.asc Description: Digital signature