This one time, at band camp, Mike Hommey said:
> Until it is proven to be exploitable, this can't be critical.

Did you look at the link included?  There is a proof of concept exploit
on the page under the 'exploit' tab.

I don't care about severity wars, so I'm not going to reraise the
severity of this report.  It seems to me that lowering the severity of 
a security bug without reading the page that discusses the problem is
not the best way forward though.

Take care,
-- 
 -----------------------------------------------------------------
|   ,''`.                                            Stephen Gran |
|  : :' :                                        [EMAIL PROTECTED] |
|  `. `'                        Debian user, admin, and developer |
|    `-                                     http://www.debian.org |
 -----------------------------------------------------------------

Attachment: signature.asc
Description: Digital signature

Reply via email to