Hi Moritz, > On Wed, Apr 21, 2010 at 10:54 PM, Moritz Muehlenhoff wrote: >> This leaves us with one vulnerability, which is apparently still >> unfixed in 4.6.2: >> >> CVE-2009-1693: Webkit commit: http://trac.webkit.org/changeset/35928 >> >> Could you please contact upstream whether this is an oversight or >> was left out intentionally?
I checked and Qt 4.6.2 isn't affected. The following changeset changes the logic: http://trac.webkit.org/changeset/35934 Cheers, Fathi -- To UNSUBSCRIBE, email to debian-qt-kde-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/t2o6a2e33621004211344yd87471bfi1f55014482e4a...@mail.gmail.com