[DRE-maint] Bug#774748: #774748: ruby-redcloth: CVE-2012-6684
Moritz Mühlenhoff
jmm at inutil.org
Mon Jan 26 12:45:32 UTC 2015
On Fri, Jan 09, 2015 at 10:57:13PM +0100, Christian Hofstaedtler wrote:
> AFAICT there is no publicly available patch, and upstream is more or
> less "dead".
>
> Redmine's patched redcloth3 looks very different from the current
> redcloth 4.x sources, so I have my doubts if forward porting this
> is feasible.
>
> Suggestions welcome.
Then we should remove it from jessie.
Cheers,
Moritz
More information about the Pkg-ruby-extras-maintainers
mailing list