[Secure-testing-team] CVE-2007-5707: OpenLDAP

Nico Golde debian-secure-testing+ml at ngolde.de
Wed Dec 5 19:16:26 UTC 2007


Hi Dominic,
* Dominic Hargreaves <dom at earth.li> [2007-12-05 20:05]:
> Just checked data/CVE/list and noticed that this CVE lists openldap2.2
> as <removed>.
> 
> However, openldap2.2 is still in the archive, and is in oldstable.
> Surely it shouldn't be listed as removed in this case?

I am not 100% sure but is this not a case for a [sarge] tag 
then?

> It is indeed affected by this bug.
> 
> (I tried to run svn blame to target this query, but after 20 minutes of
> it not returning, aborted that!)

It was me :)
Kind regards
Nico
-- 
Nico Golde - http://www.ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20071205/bcc53fe4/attachment.pgp 


More information about the Secure-testing-team mailing list