[Pkg-utopia-maintainers] Bug#508032: Security vulnerability in dbus

Sjoerd Simons sjoerd at luon.net
Sat Dec 20 12:48:50 UTC 2008


On Thu, Dec 18, 2008 at 01:39:18PM +0100, Patrick Schoenfeld wrote:
> Hi,
> 
> I saw that you made an upload for bug #503532 and #508032 to
> experimental. Now I wonder if you plan to make an upload to unstable
> suitable for lenny?

Unfortunately the situation is a little bit more complicated then that.
Tightening up the security of the dbus config is known to break various other
programs. D-Bus upstream just released a permissive version which will allow
the same things as the older dbus versions did, but logs about things that
would break with the new rules. We intend to upload that to unstable rsn, so we
can find and fix most if not all issues before uploading the final, secure verison.

  Sjoerd
-- 
If you can survive death, you can probably survive anything.





More information about the Pkg-utopia-maintainers mailing list