Hello Steffen, Am Monday 24 November 2008 12:13:55 schrieb Steffen Joeris: > I was wondering, what are your plans for lenny regarding the insecure > tempfile issue (CVE-2008-5138)[0]? From what I can see the script is not > available in sid anymore, so can we just drop it? Yes, it can be dropped. The script has been removed in recent versions of libpam-mount. The script version 0.43 in lenny is broken anyway since it uses the old configuration format instead of the new XML format.
I will prepare an upload for testing-security, which also fixes #502146 Regards, Bastian
signature.asc
Description: This is a digitally signed message part.
_______________________________________________ Secure-testing-team mailing list [email protected] http://lists.alioth.debian.org/mailman/listinfo/secure-testing-team

