[Pkg-openldap-devel] About the security issues affecting openldap in Squeeze

Ryan Tandy ryan at nardis.ca
Tue Mar 10 15:40:34 UTC 2015


On Tue, Mar 10, 2015 at 04:33:50PM +0100, Raphael Hertzog wrote:
>Hello dear maintainer(s),

Hi,

>the Debian LTS team recently reviewed the security issue(s) affecting your
>package in Squeeze:
>https://security-tracker.debian.org/tracker/CVE-2015-1545
>
>We decided that we would not prepare a squeeze security update (usually
>because the security impact is low and that we concentrate our limited
>resources on higher severity issues and on the most widely used packages).

OK.

>That said the squeeze users would most certainly benefit from a fixed
>package.
>
>If you want to work on such an update, you're welcome to do so. Please
>try to follow the workflow we have defined here:
>http://wiki.debian.org/LTS/Development

We currently have a few patches pending or under discussion for wheezy. 
After the changes for stable are finalized, I hope to backport them to 
squeeze as well, when time permits.

Thanks for your work on LTS!

Ryan
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-openldap-devel/attachments/20150310/7fe32790/attachment.sig>


More information about the Pkg-openldap-devel mailing list