NSS CVE-2013-1739 in squeeze-backports

intrigeri intrigeri at debian.org
Mon Dec 16 12:31:32 UTC 2013


Hi,

intrigeri wrote (02 Nov 2013 09:19:03 GMT) :
> are there plans to fix CVE-2013-1739 in squeeze-backports,
> likely via a 2:3.14.4-1~bpo60+1 upload?

Ping?

Since then, CVE-2013-5605 (rated "critical" by Mozilla) popped up and
was fixed a month ago in stable.

Any reason I'm missing against a nss 3.14.5-1~bpo60+1 upload to
squeeze-backports? Fixing CVE-2013-1741 and CVE-2013-5606 in stable
first, perhaps?

I will take care of the testing and upload unless the maintainers ask
me to refrain.

Cheers,
--
  intrigeri
  | GnuPG key @ https://gaffer.ptitcanardnoir.org/intrigeri/intrigeri.asc
  | OTR fingerprint @ https://gaffer.ptitcanardnoir.org/intrigeri/otr.asc



More information about the pkg-mozilla-maintainers mailing list