Re: [Mailman-Users] Security patch and Mailman 2.1.20 to be released on 31 March

2015-03-28 Thread Brad Rogers
On Sat, 28 Mar 2015 13:24:25 +0100 Roland Miyamoto wrote: Hello Roland, >I am running Mailman 2.1.15 under Debian 7. >Will the fix be included in the usual repository updates? I can't speak as an authority on either Mailman of Debian, only as a user, but security updates are usually ported to

Re: [Mailman-Users] Security patch and Mailman 2.1.20 to be released on 31 March

2015-03-28 Thread Mark Sapiro
On 03/28/2015 05:24 AM, Roland Miyamoto wrote: > Thank you, Mark, > > For this anouncement. > Does the vulnerabilitiy also affect older Mailman releases, like > 2.1.15, e.g.? Yes, but the actual number of sites that are vulnerable is probably small. More information will be available on Tuesday,

Re: [Mailman-Users] Security patch and Mailman 2.1.20 to be released on 31 March

2015-03-28 Thread Roland Miyamoto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Thank you, Mark, For this anouncement. Does the vulnerabilitiy also affect older Mailman releases, like 2.1.15, e.g.? If so, how do I make sure to incorporate the fix soon after next Tuesday, when the world will learn about the details? I am running