[tryton-debian] Bug#749073: wheezy-pu: package suds/0.4.1-5+deb7u1 Bugs #749073 + #714340

Mathias Behrle mathiasb at m9s.biz
Mon May 26 16:14:32 UTC 2014


Package: release.debian.org
Severity: normal
Tags: wheezy
User: release.debian.org at packages.debian.org
Usertags: pu
X-Debbugs-CC: maintainers at debian.tryton.org

Dear release managers,

somehow the original fix for CVE-2013-2217 never got into wheezy. This patch
fixes the CVE.

I would like to upload suds_0.4.1-5+deb7u1 with this patch backported from

 https://bitbucket.org/jurko/suds/issue/15/insecure-temporary-directory-use
 https://bitbucket.org/jurko/suds/commits/3126ac3a406c37f9982f01ad0ca4ed42cf9a47cb
 https://bitbucket.org/jurko/suds/commits/aee4b2f0318f4b4545a1da826149edaa2c047460

Debdiff attached.

Regards,
Mathias

-- 

    Mathias Behrle
    PGP/GnuPG key availabable from any keyserver, ID: 0x8405BBF6
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/tryton-debian/attachments/20140526/5c52470a/attachment-0004.sig>


More information about the tryton-debian mailing list