Bug#428194: CVE-2007-2448: security flaw in 'svn prop*' commands

2007-06-09 Thread Florian Weimer
Package: subversion Version: 1.4.2dfsg1-2 Tags: security Severity: grave Subversion 1.4.4 has been released, containing some security fixes: * fixed: security flaw in 'svn prop*' commands [CVE-2007-2448] (r25095, -099, -104, -105, -10) I haven't yet figured out, what the exact

Bug#428194: CVE-2007-2448: security flaw in 'svn prop*' commands

2007-06-09 Thread Peter Samuelson
[Florian Weimer] Subversion 1.4.4 has been released, containing some security fixes: * fixed: security flaw in 'svn prop*' commands [CVE-2007-2448] (r25095, -099, -104, -105, -10) I haven't yet figured out, what the exact problem is, and subversion.tigris.org appears to be

Bug#428194: CVE-2007-2448: security flaw in 'svn prop*' commands

2007-06-09 Thread Florian Weimer
severity 428194 minor thanks * Peter Samuelson: [Florian Weimer] Subversion 1.4.4 has been released, containing some security fixes: * fixed: security flaw in 'svn prop*' commands [CVE-2007-2448] (r25095, -099, -104, -105, -10) I haven't yet figured out, what the exact

Bug#428194: CVE-2007-2448: security flaw in 'svn prop*' commands

2007-06-09 Thread Peter Samuelson
tags 428194 pending thanks [Florian Weimer] It turns out that this is a different bug, albeit a minor one as well. Well, in any case, we uploaded 1.4.4 yesterday, so I guess I'll retroactively add the CVE-2007-2448 identifier to the changelog in the next upload. I agree that it's a minor