[Pkg-erlang-devel] Bug#594412: CouchDB insecure library loading

Gerfried Fuchs rhonda at deb.at
Mon Aug 30 12:40:28 UTC 2010


	Hi, Moritz!

* Moritz Muehlenhoff <jmm at debian.org> [2010-08-25 21:50:53 CEST]:
> Package: couchdb
> Severity: grave
> Tags: security
> 
> The vulnerability was introduced by Debian patch
> "mozjs1.9_ldlibpath.patch" on 3/24/2009.

 I fail to find this patch neither in the lenny package nor in the
squeeze package, and there was no changelog entry or upload around the
mentioned time. Are you sure about these fineprints?

 Thanks in advance,
Rhonda
-- 
https://flattr.com/thing/47066/Debian-BTS-cleaning-up





More information about the Pkg-erlang-devel mailing list