[Pkg-openldap-devel] Bug#448644: Bug#448644: Bug#448644: Bug#448644: CVE-2007-5708 remote denial of service

Russ Allbery rra at debian.org
Mon Nov 5 17:24:42 UTC 2007


Matthijs Mohlmann <matthijs at cacholong.nl> writes:

> Upgrade to 2.3.39 is I think the better choice here and after that we 
> can make the switch to 2.4. And now that 2.4 is officially released I 
> can add some initially packaging for 2.4 in svn.

If you have some spare cycles to work on 2.3.39, please go ahead.  I'm
still on vacation and won't have a chance to work on a new upload until
Wednesday or Thursday evening.

And yes, please do import 2.4 into Subversion -- that would be great!

(Should we consider using an svn-buildpackage-friendly layout in
Subversion for 2.4 so that we can use svn-upgrade to import new upstream
versions?  Or possibly even enable merge-with-upstream and not store the
upstream source in Subversion at all?)

-- 
Russ Allbery (rra at debian.org)               <http://www.eyrie.org/~eagle/>





More information about the Pkg-openldap-devel mailing list