Bug#850931: jessie-pu: package mongodb/1:2.4.10-5

2017-02-12 Thread Adam D. Barratt
Control: tags -1 + pending On Mon, 2017-01-30 at 11:28 +0200, Apollon Oikonomopoulos wrote: > On 16:36 Sat 28 Jan , Adam D. Barratt wrote: > > Control: tags -1 + confirmed > > > > On Wed, 2017-01-11 at 12:46 +0200, Apollon Oikonomopoulos wrote: > > > - CVE-2016-6494[1] is fixed by

Bug#850931: jessie-pu: package mongodb/1:2.4.10-5

2017-01-30 Thread Apollon Oikonomopoulos
On 16:36 Sat 28 Jan , Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Wed, 2017-01-11 at 12:46 +0200, Apollon Oikonomopoulos wrote: > > - CVE-2016-6494[1] is fixed by backporting the patch already applied to > >2.6 (once in sid). > > > > - TEMP-0833087-C5410D[2] is fixed

Bug#850931: jessie-pu: package mongodb/1:2.4.10-5

2017-01-28 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2017-01-11 at 12:46 +0200, Apollon Oikonomopoulos wrote: > - CVE-2016-6494[1] is fixed by backporting the patch already applied to >2.6 (once in sid). > > - TEMP-0833087-C5410D[2] is fixed by reimplementing upstream's fix for >2.6[3] using the

Bug#850931: jessie-pu: package mongodb/1:2.4.10-5

2017-01-11 Thread Apollon Oikonomopoulos
Package: release.debian.org Severity: normal Tags: jessie User: release.debian@packages.debian.org Usertags: pu Dear SRMs, I would like to update MongoDB in stable to fix two low-impact security issues: - CVE-2016-6494[1] is fixed by backporting the patch already applied to 2.6 (once