[Registry] [Bug 688672] Re: remote code execution as per DSA-2131-1

2010-12-13 Thread Jamie Strandboge
The remote code execution (CVE-2010-4344) affected 4.69 and earlier (Ubuntu 9.10 and earlier). This was fixed last week in http://www.ubuntu.com/usn/usn-1032-1. The privilege escalation issue (CVE-2010-4345) affects all releases but has not been fixed yet since upstream hasn't decided on the best w

[Registry] [Bug 688672] Re: remote code execution as per DSA-2131-1

2010-12-13 Thread Andrew Schulman
Can someone please clarify exactly which versions of exim4 are affected? Is version 4.72-1ubuntu1 in maverick affected? I've read all of the announcements and can't find this information. -- You received this bug notification because you are a member of Registry Administrators, which is the regi

[Registry] [Bug 688672] Re: remote code execution as per DSA-2131-1

2010-12-10 Thread Anders Kaseorg
** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2010-4344 ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2010-4345 ** Bug watch added: Debian Bug tracker #606612 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=606612 ** Also affects: exim4 (Debian) via h