[Pkg-mc-devel] Bug#689571: Bug#689571: CVE-2012-4463: Improper sanitization of MC_EXT_SELECTED variable when viewing multiple files

Dmitry Smirnov onlyjob at gmail.com
Wed Feb 27 00:50:54 UTC 2013


Hi Moritz,

On Wed, 27 Feb 2013 09:18:59 Moritz Muehlenhoff wrote:
> An upstream fix is now available, can you please merge this for Wheezy?
> https://www.midnight-commander.org/ticket/2913

I already tried to backport but couldn't do it so far -- there are too many 
changes especially in post-build tests for this case. Eventually I might try 
again but at my current level of competence it looks hopeless.
For Jessie it will be fixed with new upstream version.

Best wishes,
 Dmitry Smirnov.



More information about the Pkg-mc-devel mailing list