[DRE-maint] Bug#774748: #774748: ruby-redcloth: CVE-2012-6684

Moritz Mühlenhoff jmm at inutil.org
Mon Jan 26 12:45:32 UTC 2015


On Fri, Jan 09, 2015 at 10:57:13PM +0100, Christian Hofstaedtler wrote:
> AFAICT there is no publicly available patch, and upstream is more or
> less "dead".
> 
> Redmine's patched redcloth3 looks very different from the current
> redcloth 4.x sources, so I have my doubts if forward porting this
> is feasible.
> 
> Suggestions welcome.

Then we should remove it from jessie.

Cheers,
        Moritz



More information about the Pkg-ruby-extras-maintainers mailing list