Re: Bug#622919: Raise severity?

2012-01-17 Thread Adam D. Barratt
On Tue, 2012-01-17 at 19:49 +0100, gregor herrmann wrote: > On Tue, 17 Jan 2012 13:14:35 +, Adam D. Barratt wrote: > > > >I've reached Yves on IRC and he was kind enough to take another look > > >at the patches and provided a new minimal one. [...] > > >I propose to upload the version from the

Re: Bug#622919: Raise severity?

2012-01-17 Thread gregor herrmann
On Tue, 17 Jan 2012 13:14:35 +, Adam D. Barratt wrote: > >I've reached Yves on IRC and he was kind enough to take another look > >at the patches and provided a new minimal one. > It's still not /that/ minimal. :) Right, it doesn't fullfill all definitions of 'minimal' :) > >I propose to upl

Re: Bug#622919: Raise severity?

2012-01-17 Thread Adam D. Barratt
On 06.01.2012 15:33, gregor herrmann wrote: On Tue, 03 Jan 2012 21:35:07 +0100, gregor herrmann wrote: Quick attempt (I looked at the diff in upstream 0.67 -> 0.68 and ripped out the parts from the original patch that had no equivalent in the upstream diff). Reviews still appreciated. I've r

Re: Bug#622919: Raise severity?

2012-01-06 Thread gregor herrmann
On Tue, 03 Jan 2012 21:35:07 +0100, gregor herrmann wrote: > Quick attempt (I looked at the diff in upstream 0.67 -> 0.68 and > ripped out the parts from the original patch that had no equivalent > in the upstream diff). > > Reviews still appreciated. I've reached Yves on IRC and he was kind eno

Re: Bug#622919: Raise severity?

2012-01-03 Thread gregor herrmann
On Tue, 03 Jan 2012 21:35:07 +0100, gregor herrmann wrote: > > Looking at the diff again (attached for reference), it's quite long > > and also includes documentation fixes. > > I guess we have to look a bit to trim it down to the relevant parts. > Quick attempt (I looked at the diff in upstream 0

Re: Bug#622919: Raise severity?

2012-01-03 Thread gregor herrmann
On Tue, 03 Jan 2012 21:14:23 +0100, gregor herrmann wrote: > Looking at the diff again (attached for reference), it's quite long > and also includes documentation fixes. > I guess we have to look a bit to trim it down to the relevant parts. Quick attempt (I looked at the diff in upstream 0.67 ->

Re: Bug#622919: Raise severity?

2012-01-03 Thread gregor herrmann
On Tue, 03 Jan 2012 21:14:23 +0100, gregor herrmann wrote: > Looking at the diff again (attached for reference), it's quite long > and also includes documentation fixes. 2nd attempt gr -- .''`. Homepage: http://info.comodo.priv.at/ - OpenPGP key ID: 0x8649AA06 : :' : Debian GNU/Linux user

Re: Bug#622919: Raise severity?

2012-01-03 Thread gregor herrmann
On Tue, 03 Jan 2012 20:54:12 +0100, Moritz Muehlenhoff wrote: > > On Tue, 19 Apr 2011 19:48:35 +0200, Salvatore Bonaccorso wrote: > > > > > As this about SQL injection weaknesses, should the severity be raised > > > to grave, as security bug? > > > > Hm, probably yes. > > > > Upstream Changes h