On Wed, 30 Jul 2008, Toni Mueller wrote:

> 
> Hi,
> 
> On Mon, 28.07.2008 at 17:24:01 -0700, Peter Valchev <[EMAIL PROTECTED]> wrote:
> > We are in release mode, with 4.4 just around the corner. This means
> > that from now, no more commits to ports unless they are VERY urgent -
> > such as fixing a broken dependency, high impact security issue, etc,
> 
> I'd like to point at some problems in Python 2.5.2, which I became
> aware of just two days ago:
> 
> CVE-2007-2052

fixed in python-2.5.1

> CVE-2007-4965

ditto

> CVE-2008-1679 CVE-2008-1721 CVE-2008-1887

These are present in 2.5.2 and we should fix them prior to release.
I'll look at it.

-d

Reply via email to