Bug#887751: [pkg-cli-libs-team] Bug#887751: mysql-connector-net: CVE-2018-2585 DoS via unauthenticated connection

2018-01-22 Thread Mirco Bauer
severity 887751 serious thanks Hello Guido, ok, that does make sense, to have at least a RC severity to keep the bad/affected version out of testing. If your severity upgrading email would have contained this reasoning I would wouldn't have downgraded it :) "grave" is too high though as this

Bug#887751: [pkg-cli-libs-team] Bug#887751: mysql-connector-net: CVE-2018-2585 DoS via unauthenticated connection

2018-01-22 Thread Guido Günther
Hi Mirco, On Tue, Jan 23, 2018 at 01:37:51PM +0800, Mirco Bauer wrote: >severity 887751 important >thanks > >Hello Guido, > >thank you for the report. > >CVE-2018-2585 has been rated by the Debian security as a minor issue [0]. >You have bumped the severity from

Bug#887751: [pkg-cli-libs-team] Bug#887751: mysql-connector-net: CVE-2018-2585 DoS via unauthenticated connection

2018-01-22 Thread Mirco Bauer
severity 887751 important thanks Hello Guido, thank you for the report. CVE-2018-2585 has been rated by the Debian security as a minor issue [0]. You have bumped the severity from important to grave without an explanation. Is there something you want to share? [0]:

Bug#887751: mysql-connector-net: CVE-2018-2585 DoS via unauthenticated connection

2018-01-19 Thread Guido Günther
Package: mysql-connector-net X-Debbugs-CC: t...@security.debian.org secure-testing-t...@lists.alioth.debian.org Severity: important Tags: grave Version: 6.4.3-2 Hi, the following vulnerability was published for mysql-connector-net. CVE-2018-2585[0]: | Vulnerability in the MySQL Connectors