On വ്യാഴം 17 ആഗസ്റ്റ് 2017 10:46 വൈകു, Salvatore Bonaccorso wrote:
> Agree, we can at least lower the severity and thanks a lot for the
> followup. The CVE seem to be specific assigned for the "via a crafted
> SSH URL in a project import". Can you close this bug once the gitlab
> version contains as well this extra safety measure if still running
> with older git?
yes.
> For the security tracker I have already downgraded the severity to
> unimportant.

thanks.

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Pkg-ruby-extras-maintainers mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-ruby-extras-maintainers

Reply via email to