On Wed, 30 Jul 2008, Toni Mueller wrote: > > Hi, > > On Mon, 28.07.2008 at 17:24:01 -0700, Peter Valchev <[EMAIL PROTECTED]> wrote: > > We are in release mode, with 4.4 just around the corner. This means > > that from now, no more commits to ports unless they are VERY urgent - > > such as fixing a broken dependency, high impact security issue, etc, > > I'd like to point at some problems in Python 2.5.2, which I became > aware of just two days ago: > > CVE-2007-2052
fixed in python-2.5.1 > CVE-2007-4965 ditto > CVE-2008-1679 CVE-2008-1721 CVE-2008-1887 These are present in 2.5.2 and we should fix them prior to release. I'll look at it. -d