Hello Steffen,

Am Monday 24 November 2008 12:13:55 schrieb Steffen Joeris:
> I was wondering, what are your plans for lenny regarding the insecure
> tempfile issue (CVE-2008-5138)[0]? From what I can see the script is not
> available in sid anymore, so can we just drop it?
Yes, it can be dropped. The script has been removed in recent versions of 
libpam-mount. The script version 0.43 in lenny is broken anyway since it uses 
the old configuration format instead of the new XML format.

I will prepare an upload for testing-security, which also fixes #502146

Regards,
  Bastian

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
Secure-testing-team mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-team

Reply via email to