[Secure-testing-team] Release Freeze Exception for Ampache-3.4.1-2

Charliej cjsmo at cableone.net
Sun Nov 2 13:10:22 UTC 2008


Release Team,

Would you please grant a Release Freeze Exception for ampache-3.4.1-2 as
this upload fixes several bugs which deal with security issues, and is a
bug fix only upload.

Bug #504169 - RC 
CVE-2008-4796: missing input sanitising in Snoopy.class.php

Bug #496369 - Normal
The possibility of attack with the help of symlinks in some Debian
packages

One other thing could you please bump the urgency to "High" as I and my
sponsor missed this.

Best regards
Charlie




More information about the Secure-testing-team mailing list