[Secure-testing-team] Bug#811048: claws-mail: CVE-2015-8708: Incomplete fix for CVE-2015-8614

Salvatore Bonaccorso carnil at debian.org
Fri Jan 15 07:29:05 UTC 2016


Source: claws-mail
Version: 3.13.1-1
Severity: important
Tags: security upstream patch

Hi,

the following vulnerability was published for claws-mail.

CVE-2015-8708[0]:
for incomplete fix for CVE-2015-8614

I'm attaching the patch made by Ben Hutchings for his upload to
squeeze-lts.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2015-8708

Regards,
Salvatore
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2015-8708.patch
Type: text/x-diff
Size: 1591 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20160115/956fdb5b/attachment.patch>


More information about the Secure-testing-team mailing list