On Sun, 2018-02-04 at 20:48 +0100, Mattia Rizzolo wrote: > The patch is attached (it's against released 0.9.5).
Hi, thanks for forwarding the patch for CVE-2018-5295. I committed it as revision 1889: https://sourceforge.net/p/podofo/code/1889 > > (PS: should we start moving these kind of things to the bug tracker, > or perhaps only start with new ones, etc?) Right. Since the bug tracker is opened, I guess the best would be to use the bug tracker for new issues and for those CVE-s without patches, thus they won't get lost. To be honest, I'm not aware of any pending patches on the list (this was the last one on my list, the one for visibility, which requires review and eventual confirmation from others, I do not count), but it's likely I overlooked something. Thanks and bye, zyx ------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot _______________________________________________ Podofo-users mailing list Podofo-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/podofo-users