Fixing "lucky 13" CVE-2013-0169 in gnutls28

Julien Cristau jcristau at debian.org
Fri Mar 1 21:16:23 UTC 2013


On Sat, Feb 23, 2013 at 18:37:12 +0100, Andreas Metzler wrote:

> Find attached a proposed patch to build both guile-gnutls and
> gnutls-bin from gnutls26 instead of gnutls28 for wheezy. Would this be
> acceptable for an unstable upload targeted for testing? Afterwards
> gnutls28 could be pulled from wheezy.
> 
Is there a particular reason we need to ship guile-gnutls?  It appears
to have 0 reverse dependency...

Cheers,
Julien
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnutls-maint/attachments/20130301/89f1fca3/attachment.pgp>


More information about the Pkg-gnutls-maint mailing list