[Secure-testing-team] Security advisory for docvert's CVE-2008-5147 ?

Francois Marier francois at debian.org
Mon Dec 1 22:17:28 UTC 2008


(Thanks for CCing me on your replies)

On 2008-12-01 at 10:55:33, Nico Golde wrote:
> No it's not. We marked this is unimportant in the security 
> tracker as this is only an unused test script:
> http://security-tracker.debian.net/tracker/CVE-2008-5147

Great. By the way, is there a way for me to "subscribe" one way or another
to receive a notification whenever one of my packages has a CVE associated
to it?

> Ok that's fine. Please ping us in this case with the version 
> so we can mark it as fixed in the security tracker.

I have uploaded docvert 3.4-7 to unstable and requested a freeze exception
for lenny.

The debdiff is attached to this email in case you're interested.

Cheers,
Francois
-------------- next part --------------
A non-text attachment was scrubbed...
Name: docvert_security_fix.diff
Type: text/x-diff
Size: 1114 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20081202/dcf82d77/attachment.diff 


More information about the Secure-testing-team mailing list