Fixing "lucky 13" CVE-2013-0169 in gnutls28

Dominique Dumont dod at debian.org
Wed Feb 20 18:47:41 UTC 2013


Le dimanche 10 février 2013 16:26:40, Andreas Metzler a écrit :
> >> PS: My first idea was to simply pull gnutls28, providing guile-gnutls
> >> and gnutls-bin from gnutls26 again. However there is a reverse
> >> dependency (pan) on libgnutls28 in testing nowadays. Pan is not
> >> distributable currently http://bugs.debian.org/699892
> >> but that might still be fixed in time for the release.

I've fixed the license bug by dropping SSL support from pan. pan no longer 
depends on any libgnutls.

All the best

Dominique
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnutls-maint/attachments/20130220/c88d677b/attachment.pgp>


More information about the Pkg-gnutls-maint mailing list