Bug#710830: gcc-4.7: CVE-2002-2439

2013-06-17 Thread Matthias Klose
Am 16.06.2013 02:00, schrieb Michael Gilbert: On Fri, Jun 14, 2013 at 6:07 AM, Matthias Klose wrote: this is #402694. It is disappointing that the security did become a management only team. Note that this is an issue, where even a member of the security team is involved upstream, doesn't

Bug#710830: gcc-4.7: CVE-2002-2439

2013-06-15 Thread Michael Gilbert
On Fri, Jun 14, 2013 at 6:07 AM, Matthias Klose wrote: this is #402694. It is disappointing that the security did become a management only team. Note that this is an issue, where even a member of the security team is involved upstream, doesn't comment, doesn't backport the patch upstream,

Processed: Re: Bug#710830: gcc-4.7: CVE-2002-2439

2013-06-14 Thread Debian Bug Tracking System
Processing control commands: severity -1 important Bug #710830 [gcc-4.7] gcc-4.7: CVE-2002-2439 Severity set to 'important' from 'serious' tags -1 - patch Bug #710830 [gcc-4.7] gcc-4.7: CVE-2002-2439 Removed tag(s) patch. tags -1 + moreinfo Bug #710830 [gcc-4.7] gcc-4.7: CVE-2002-2439 Added

Bug#710830: gcc-4.7: CVE-2002-2439

2013-06-14 Thread Matthias Klose
Control: severity -1 important Control: tags -1 - patch Control: tags -1 + moreinfo Am 02.06.2013 21:47, schrieb Michael Gilbert: Package: gcc-4.7 Severity: serious Version: 4.7.0-1 Tags: security, patch Hi, An integer overflow issue was discovered for gcc-4.7:

Bug#710830: gcc-4.7: CVE-2002-2439

2013-06-02 Thread Michael Gilbert
Package: gcc-4.7 Severity: serious Version: 4.7.0-1 Tags: security, patch Hi, An integer overflow issue was discovered for gcc-4.7: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2002-2439 This is already fixed in gcc-4.8. These seem to be the two relevant patches that fix the problem: