Bug#930887: [Debian-ha-maintainers] Bug#930887: Bug#930887: CVE-2019-10153

2019-06-25 Thread Valentin Vidić
On Tue, Jun 25, 2019 at 09:32:48AM +0200, wf...@niif.hu wrote: > I think so, but I may overlook something. Also, I find the switch to > UTF-8 decoding a somewhat unsatisfactory fix: is it wise to depend on > the result being correctly UTF-8 encoded? If anything goes wrong, an > exception is

Bug#930887: [Debian-ha-maintainers] Bug#930887: Bug#930887: CVE-2019-10153

2019-06-24 Thread Valentin Vidić
On Mon, Jun 24, 2019 at 02:03:11PM +0200, wf...@niif.hu wrote: > According to https://security-tracker.debian.org/tracker/CVE-2019-10153, > the vulnerable code is not present in stretch. However, I don't > understand why this does not count: > >