stable-security update of vim

Steffen Joeris steffen.joeris at skolelinux.de
Tue Feb 17 07:44:34 UTC 2009


On Tue, 17 Feb 2009 06:23:12 pm James Vega wrote:
> On Tue, Feb 17, 2009 at 07:50:26AM +0100, Steffen Joeris wrote:
> > Hi James
> >
> > Thanks for your time and caring about this.
> >
> > > > We would like to issue a DSA for these CVEs and were wondering,
> > > > whether you as the maintainers could provide packages for
> > > > stable-security?
> > > >
> > > > It would be great, if you could send us a full debdiff.
> > > > Thanks in advance for your work.
> > >
> > > debdiff and source package are available on people[0].  Sorry for the
> > > delay in getting the packages prepared.  I've included all the fixes
> > > requested, including for netrw.
> >
> > I downloaded your packages and performed a debdiff, where I found the
> > following changed files (see list below). Now I don't understand, why all
> > the upstream patch files and files under /debian where changed for the
> > security update.
> > I suppose it has something to do with vim packaging, but there you are
> > the expert. Could you quickly enlighten me? :)
> >
> > Cheers
> > Steffen
> >
> >
> > white at security:~/vim$ debdiff old/vim_7.0-122+1etch3.dsc
> > new/vim_7.0-122+1etch4.dsc | lsdiff
> > zcat: /home/white/vim/new/vim_7.0-122+1etch4.diff.gz: No such file or
> > directory
>
> Because you didn't have vim_7.0-122+1etch4.diff.gz where it needs to be? :)
...

Patch is quite huge, but it looks sane. How much testing did you give it?
Please go ahead and upload.
I'll start testing as well, once it's uploaded.

Cheers
Steffen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: This is a digitally signed message part.
Url : http://lists.alioth.debian.org/pipermail/pkg-vim-maintainers/attachments/20090217/d0300e8c/attachment.pgp 


More information about the pkg-vim-maintainers mailing list