[DLA 39-1] gpgme1.0 security update

2014-08-20 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Package: gpgme1.0 Version: 1.2.0-1.2+deb6u1 CVE ID : CVE-2014-3564 Debian Bug : 756651 Tomas Trnka discovered a heap-based buffer overflow within the gpgsm status handler of GPGME, a library designed to make access to

Please add me to the secure-testing project

2014-08-20 Thread Balint Reczey
I would like to prepare the wireshark DLA. Cheers, Balint -- To UNSUBSCRIBE, email to debian-lts-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org Archive: https://lists.debian.org/53f48213.4010...@balintreczey.hu

Re: proposed wireshark_1.2.11-6+squeeze15 fixing multiple vulnerabilities

2014-08-20 Thread Holger Levsen
Hi Balint, On Mittwoch, 20. August 2014, Balint Reczey wrote: I have prepared a security update for the wireshark source package. great. Please see the diffs attached. and then, what do you want us to do? Review the patch? Test the package? Upload? All of that? Just some? :) cheers,

Re: proposed wireshark_1.2.11-6+squeeze15 fixing multiple vulnerabilities

2014-08-20 Thread Bálint Réczey
Hi Holger, 2014-08-20 13:22 GMT+02:00 Holger Levsen hol...@layer-acht.org: Hi Balint, On Mittwoch, 20. August 2014, Balint Reczey wrote: I have prepared a security update for the wireshark source package. great. Please see the diffs attached. and then, what do you want us to do? Review

Re: Please add me to the secure-testing project

2014-08-20 Thread Salvatore Bonaccorso
Hi Balint, On Wed, Aug 20, 2014 at 01:10:11PM +0200, Balint Reczey wrote: I would like to prepare the wireshark DLA. Hmm, I have added you already earlier today. Could you check you can commit and ping again if it does not work? Regards, Salvatore -- To UNSUBSCRIBE, email to

Re: Please add me to the secure-testing project

2014-08-20 Thread Holger Levsen
Hi, On Mittwoch, 20. August 2014, Salvatore Bonaccorso wrote: Could you check you can commit and ping again if it does not work? he already commited stuff :) [Secure-testing-commits] r28376 - cheers, Holger signature.asc Description: This is a digitally signed message part.

Fwd: Re: php5 in squeeze LTS

2014-08-20 Thread Ondřej Surý
FYI https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=757342 Personally I would suggest you to do the same for 5.3.x in squeeze LTS. Cheers, -- Ondřej Surý ond...@sury.org Knot DNS (https://www.knot-dns.cz/) – a high-performance DNS server -- To UNSUBSCRIBE, email to