[Pkg-openldap-devel] slapd: dangerous access rule in default config

Yves-Alexis Perez corsac at debian.org
Sat Mar 28 21:20:45 UTC 2015


On lun., 2015-02-16 at 21:23 +0100, Yves-Alexis Perez wrote:
> On dim., 2015-02-15 at 17:36 -0800, Ryan Tandy wrote:
> > What needs to happen to move this forward?
> > 
> > Thanks for the poke. I had been meaning to ask the same question.
> > 
> > Yves-Alexis, I'm not sure whether you followed the other thread...
> 
> Actually, sorry for that but I didn't really follow anything these past
> few weeks, I'm somehow kind of [vac] because of moving to a new home.
> This just happened last week-end, so I should be able to work on this
> when things have settled down a bit here, but that won't happen this
> week, I think.
> 
Sorry for letting this falls through the cracks. I guess we should try
to finish this by pushing a DSA so people are aware of this.

The patches looks ok, so I think we can proceed with the upload to
security-master. I didn't yet requested a CVE on oss-sec, so I'll do it
right now so we have it for the DSA.

Any question? Again sorry for the delay.

Regards,
-- 
Yves-Alexis
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 473 bytes
Desc: This is a digitally signed message part
URL: <http://lists.alioth.debian.org/pipermail/pkg-openldap-devel/attachments/20150328/0e7ffc29/attachment.sig>


More information about the Pkg-openldap-devel mailing list