Hi Moritz,

> On Wed, Apr 21, 2010 at 10:54 PM, Moritz Muehlenhoff wrote:
>> This leaves us with one vulnerability, which is apparently still
>> unfixed in 4.6.2:
>>
>> CVE-2009-1693: Webkit commit: http://trac.webkit.org/changeset/35928
>>
>> Could you please contact upstream whether this is an oversight or
>> was left out intentionally?

I checked and Qt 4.6.2 isn't affected.
The following changeset changes the logic:
http://trac.webkit.org/changeset/35934

Cheers,

Fathi



-- 
To UNSUBSCRIBE, email to debian-qt-kde-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: 
http://lists.debian.org/t2o6a2e33621004211344yd87471bfi1f55014482e4a...@mail.gmail.com

Reply via email to