Bug#594412: CouchDB insecure library loading

2010-09-07 Thread Gerfried Fuchs
Hi again! * Gerfried Fuchs rho...@deb.at [2010-08-30 14:40:28 CEST]: * Moritz Muehlenhoff j...@debian.org [2010-08-25 21:50:53 CEST]: Package: couchdb Severity: grave Tags: security The vulnerability was introduced by Debian patch mozjs1.9_ldlibpath.patch on 3/24/2009. I

Bug#594412: CouchDB insecure library loading

2010-08-30 Thread Gerfried Fuchs
Hi, Moritz! * Moritz Muehlenhoff j...@debian.org [2010-08-25 21:50:53 CEST]: Package: couchdb Severity: grave Tags: security The vulnerability was introduced by Debian patch mozjs1.9_ldlibpath.patch on 3/24/2009. I fail to find this patch neither in the lenny package nor in the

Bug#594412: CouchDB insecure library loading

2010-08-25 Thread Moritz Muehlenhoff
Package: couchdb Severity: grave Tags: security The following was posted to oss-security: Date: Wed, 25 Aug 2010 14:52:52 -0400 From: Dan Rosenberg dan.j.rosenb...@gmail.com Subject: [oss-security] CVE request: CouchDB insecure library loading (Debian/Ubuntu only) I discovered that the