Bug#715646: Processed: Bug#715646 marked as pending

Adrian Bunk bunk at debian.org
Thu May 11 19:51:43 UTC 2017


On Sun, Mar 12, 2017 at 09:06:34AM +0100, Marcos Fouces wrote:
> control: severity -1 grave
> 
> This could lead to DOS or, even worst, remote code execution. Following
> Hilko Bengen's advice: i re-adjust the severity.

Hi Marcos,

thanks a lot for fixing this bug as well as the similar #716355, #716457 
and #716458 in dsniff for stretch.

If these issues are serious enough, please coordinate with the security 
team (added to Cc) for getting them to jessie as part of a DSA.

If they are not serious enough for a DSA, it would be appreciated if you 
could prepare a package for the next jessie point release.

Thanks
Adrian

-- 

       "Is there not promise of rain?" Ling Tan asked suddenly out
        of the darkness. There had been need of rain for many days.
       "Only a promise," Lao Er said.
                                       Pearl S. Buck - Dragon Seed




More information about the Pkg-security-team mailing list