On Sat, 02 Feb 2019 00:46:12 +0100 Moritz Muehlenhoff <j...@debian.org>
wrote:
> Package: yum-utils
> Severity: grave
> Tags: security
> 
> This was assigned CVE-2018-10897:
> https://bugzilla.redhat.com/show_bug.cgi?id=1600221
> https://github.com/rpm-software-management/yum-utils/commit/7554c0133eb830a71dc01846037cc047d0acbc2c
> https://github.com/rpm-software-management/yum-utils/commit/6a8de061f8fdc885e74ebe8c94625bf53643b71c
> https://github.com/rpm-software-management/yum-utils/pull/43

I'm not sure how active Mike is currently.

Since I'm using the package in a multi distro build system, I would
proceed with uploading a fix and join as co-maintainer.

I already created a salsa project:
https://salsa.debian.org/debian/yum-utils

@Mike: Can I get a short approval?

Also: Is the experimental upload ready for buster?

Cheers
Markus Frosch
-- 
mar...@lazyfrosch.de / lazyfro...@debian.org
https://lazyfrosch.de

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to