I was looking over some of the packages which are still in need of DLAs. I saw that bind9 is listed as being vulnerable to CVE-2016-6170, but that is been marked as no-dsa for jessie [0].
Should it be marked as no-dla for wheezy based on the issue being minor? Regards, -Roberto [0] https://security-tracker.debian.org/tracker/CVE-2016-6170 -- Roberto C. Sánchez http://people.connexer.com/~roberto http://www.connexer.com
signature.asc
Description: Digital signature