[Pkg-ofed-devel] Bug#603841: CVE-2010-4173 libsdp: insecure log file handling

Moritz Muehlenhoff jmm at inutil.org
Thu Dec 2 18:38:15 UTC 2010


On Thu, Dec 02, 2010 at 05:49:35PM +0100, Benoit Mortier wrote:
> Le Thursday 25 November 2010 17:51:30 Moritz Muehlenhoff, vous avez 
> écrit :
> > Hi,
> >
> > On Wed, Nov 17, 2010 at 09:12:26PM +0100, Moritz Muehlenhoff wrote:
> > > Package: libsdp
> > > Severity: grave
> > > Tags: security
> > >
> > > Please see https://bugzilla.redhat.com/show_bug.cgi?id=647941
> > > for details.
> > >
> > > Please fix this in unstable with an isolated fix and asking
> > > release managers for an unblock afterwards.
> >
> > I'm attaching the isolated upstream fix, please test and take of
> > an upload.
> 
> Thanks for this.
> 
> Will prepare an upload 

Alexander already uploaded a fix to DELAYED/10, maybe there's a way to
move this upload to the regular archive faster?

Cheers,
        Moritz





More information about the Pkg-ofed-devel mailing list