Bug#850954: CVE-2016-10040

2017-01-11 Thread Moritz Mühlenhoff
Lisandro Damián Nicanor Pérez Meyer wrote: > > Maybe the next QT upload should simply add a note to the > > changelog that it's unsupported. Do we have any notable > > users of QXmlSimpleReader in stretch? Probably not. > > I'm afraid we do: > >

Bug#850954: CVE-2016-10040

2017-01-11 Thread Lisandro Damián Nicanor Pérez Meyer
clone 850954 -1 reassign -1 qt4-x11 4:4.8.2+dfsg-11 thanks On miércoles, 11 de enero de 2017 16:44:48 ART Moritz Muehlenhoff wrote: > Source: qtbase-opensource-src > Severity: important > Tags: security > > Hi QT maintainers, Hi Moritz! > there was the following report on QXmlSimpleReader: >

Bug#850954: CVE-2016-10040

2017-01-11 Thread Moritz Muehlenhoff
Source: qtbase-opensource-src Severity: important Tags: security Hi QT maintainers, there was the following report on QXmlSimpleReader: http://www.openwall.com/lists/oss-security/2016/12/24/2 Which upstream later later on labels as deprecated: