Bug#610032: CVE-2010-4341

2011-01-25 Thread Moritz Mühlenhoff
On Sat, Jan 15, 2011 at 12:21:16AM +0100, Moritz Muehlenhoff wrote:
 Package: sssd
 Severity: grave
 Tags: security
 
 Please see https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4341 
 for description and patch.

What's the status?

Cheers,
Moritz



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#610032: CVE-2010-4341

2011-01-25 Thread Petter Reinholdtsen
[Moritz Mühlenhoff]
 What's the status?

Been too busy with work and real life to look at sssd, and welcome NMUs
to fix it.  It is unlikely to change before Squeeze is released, but I
hope it will improve in a month or two.  I suspect Werner is in the
same situation.

Happy hacking,
-- 
Petter Reinholdtsen



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#610032: CVE-2010-4341

2011-01-25 Thread Moritz Mühlenhoff
On Tue, Jan 25, 2011 at 09:56:45PM +0100, Petter Reinholdtsen wrote:
 [Moritz Mühlenhoff]
  What's the status?
 
 Been too busy with work and real life to look at sssd, and welcome NMUs
 to fix it.  It is unlikely to change before Squeeze is released, but I
 hope it will improve in a month or two.  I suspect Werner is in the
 same situation.

Petter, Werner

I've uploaded an NMU to unstable. I could only do artificial tests.
since I lack a setup/LDAP to test sssd in practive.

Please test the packages in a real sssd setup and request the unblock
for Squeeze.

Cheers,
Moritz



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#610032: CVE-2010-4341

2011-01-15 Thread Adam D. Barratt
user release.debian@packages.debian.org
tag 610032 + squeeze-ignore
usertag 610032 + squeeze-can-defer
thanks

On Sat, 2011-01-15 at 00:21 +0100, Moritz Muehlenhoff wrote:
 Package: sssd
 Severity: grave
 Tags: security
 
 Please see https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4341 
 for description and patch.

Can be fixed via stable-security after release if required; marking as
not a blocker for Squeeze.

Regards,

Adam




-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Processed: Re: Bug#610032: CVE-2010-4341

2011-01-15 Thread Debian Bug Tracking System
Processing commands for cont...@bugs.debian.org:

 user release.debian@packages.debian.org
Setting user to release.debian@packages.debian.org (was 
a...@adam-barratt.org.uk).
 tag 610032 + squeeze-ignore
Bug #610032 [sssd] CVE-2010-4341
Added tag(s) squeeze-ignore.
 usertag 610032 + squeeze-can-defer
Bug#610032: CVE-2010-4341
There were no usertags set.
Usertags are now: squeeze-can-defer.
 thanks
Stopping processing here.

Please contact me if you need assistance.
-- 
610032: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=610032
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems


-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#610032: CVE-2010-4341

2011-01-14 Thread Moritz Muehlenhoff
Package: sssd
Severity: grave
Tags: security

Please see https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4341 
for description and patch.

Cheers,
Moritz

-- System Information:
Debian Release: 6.0
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-5-amd64 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org