Re: python-django and CVE-2016-9014

2016-11-10 Thread Brian May
Brian May writes: >> That's not the issue being patched. > > Ooops. Will fix the changelog before I upload. Here is a fixed diff: diff -Nru python-django-1.4.22/debian/changelog python-django-1.4.22/debian/changelog --- python-django-1.4.22/debian/changelog 2016-10-07 07:17:00.0

Re: python-django and CVE-2016-9014

2016-11-10 Thread Brian May
Ben Hutchings writes: > That's not the issue being patched. Ooops. Will fix the changelog before I upload. -- Brian May

Re: python-django and CVE-2016-9014

2016-11-10 Thread Ben Hutchings
On Fri, 2016-11-11 at 08:46 +1100, Brian May wrote: > > Brian May writes: > > > I think I understand this security issue now. I should be able to work > > on a fix for wheezy-security tomorrow. > > Ok, I have packages available for testing at: > > https://people.debian.org/~bam/debian/pool/main

Re: python-django and CVE-2016-9014

2016-11-10 Thread Brian May
Brian May writes: > I think I understand this security issue now. I should be able to work > on a fix for wheezy-security tomorrow. Ok, I have packages available for testing at: https://people.debian.org/~bam/debian/pool/main/p/python-django/ The debdiff is below. diff -Nru python-django-1.4.

Wheezy update of ming?

2016-11-10 Thread Chris Lamb
Hello dear maintainer(s), the Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of ming: https://security-tracker.debian.org/tracker/source-package/ming Would you like to take care of this yourself? If yes, please follow the workflow we have def

testing curl for Wheezy LTS

2016-11-10 Thread Thorsten Alteholz
Hi everybody, I uploaded version 7.26.0-1+wheezy17 of curl to: https://people.debian.org/~alteholz/packages/wheezy-lts/curl/amd64/ Please give it a try and tell me about any problems you met. It would be nice to also test cases where "range-to" is really needed. Thanks! Thorsten * CVE-

Wheezy update of potrace?

2016-11-10 Thread Chris Lamb
Hello dear maintainer(s), the Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of potrace: https://security-tracker.debian.org/tracker/source-package/potrace Would you like to take care of this yourself? If yes, please follow the workflow we ha