[php-maint] Bug#535888: Bug#540611: php5: exif buffer overread

Nico Golde nion at debian.org
Mon Aug 10 16:05:57 UTC 2009


Hi,
* Michael S. Gilbert <michael.s.gilbert at gmail.com> [2009-08-10 05:07]:
> On Sun, 9 Aug 2009 21:02:36 -0500 Raphael Geissert wrote:
> > On Sunday 09 August 2009 01:13:42 Michael S. Gilbert wrote:
> > >
> > > hello, it has been disclosed that php is vulnerable to a buffer
> > > over-read in versions befor 5.2.10.  see:
> > 
> > You already reported it as #535888, there's no need to report it more than 
> > once.
> > And no, reopening the report is *not necessary*, the BTS knows what versions 
> > are affected. *Take a look at the graph at the top if necessary*
> > 
> > And adding another entry to  the security tracker doesn't help either.
> 
> i appologize for the mistake.  when issues don't get assigned a common
> number, it's easy to miss the fact that different reports are actually
> the same issue.  it was not my intent to open a duplicate bug, it looked
> like this was new.
> 
> maybe it's just me, but dealing with issues in multiple releases with
> the debian bts is non-obvious and a major pain.  is the "*right*" way
> to do this documented somewhere?

http://wiki.debian.org/BugsVersionTracking maybe helps you.

Cheers
Nico
-- 
Nico Golde - http://www.ngolde.de - nion at jabber.ccc.de - GPG: 0xA0A0AAAA
For security reasons, all text in this mail is double-rot13 encrypted.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-php-maint/attachments/20090810/2f60ee81/attachment-0003.pgp>


More information about the pkg-php-maint mailing list