Re: squeeze update of binutils?

2015-08-20 Thread Matthias Klose
On 08/19/2015 11:28 PM, b...@decadent.org.uk wrote: > Hello dear maintainer(s), > > the Debian LTS team would like to fix the security issues which are > currently open in the Squeeze version of binutils: > https://security-tracker.debian.org/tracker/source-package/binutils > > Would you like to

Re: squeeze update of libvpx?

2015-08-20 Thread Guido Günther
On Thu, Aug 20, 2015 at 10:04:56AM +0200, Ben Hutchings wrote: > On Thu, 2015-08-20 at 10:09 +0300, Sebastian Dröge wrote: > > Hi, > > > > On Mi, 2015-08-19 at 23:29 +0200, b...@decadent.org.uk wrote: > > > Hello dear maintainer(s), > > > > > > the Debian LTS team would like to fix the security i

Re: Unsupported packages for Wheezy LTS

2015-08-20 Thread Moritz Mühlenhoff
On Wed, Aug 19, 2015 at 01:02:59PM +0200, Moritz Muehlenhoff wrote: > Hi, > as a followup to yesterday's BoF I compared the list of unsupported > packages in Squeeze LTS against the current status quo: In addition it would make sense to exclude the OpenStack packages in wheezy, they are fully unsu

Re: squeeze update of wordpress?

2015-08-20 Thread Guido Günther
On Sat, Aug 15, 2015 at 02:10:56PM +1000, Craig Small wrote: > On Fri, Aug 14, 2015 at 10:11:19PM +0200, Guido Günther wrote: > > Are you planning to introduce a new upstream version or to backport the > > fixes? Squeeze is currently in sync with Wheezy, we could try to keep it > > like that. Do yo

Re: Bug#793616: marked as done (openssh: CVE-2015-5600: MaxAuthTries limit bypass via duplicates in KbdInteractiveDevices)

2015-08-20 Thread Mike Gabriel
Hi Colin, On Thu Aug 20 00:50:02 2015 Colin Watson wrote: > On Fri, Aug 07, 2015 at 11:30:07AM +, Debian Bug Tracking System > wrote: > > openssh (1:5.5p1-6+squeeze6) squeeze-lts; urgency=medium > > . > > * Non-maintainer upload by the Debian LTS team. > > * CVE-2015-5352: Reject X11 connecti

Re: squeeze update of libvpx?

2015-08-20 Thread Ben Hutchings
On Thu, 2015-08-20 at 10:09 +0300, Sebastian Dröge wrote: > Hi, > > On Mi, 2015-08-19 at 23:29 +0200, b...@decadent.org.uk wrote: > > Hello dear maintainer(s), > > > > the Debian LTS team would like to fix the security issues which are > > currently open in the Squeeze version of libvpx: > > http

Re: squeeze update of libvpx?

2015-08-20 Thread Sebastian Dröge
Hi, On Mi, 2015-08-19 at 23:29 +0200, b...@decadent.org.uk wrote: > Hello dear maintainer(s), > > the Debian LTS team would like to fix the security issues which are > currently open in the Squeeze version of libvpx: > https://security-tracker.debian.org/tracker/CVE-2015-4485 > https://security-t