Hi,
> > Anyways, 4.3.29 introduced quite a few regressions[0], we should probably
> > wait
> > for 4.3.30.
>
> I would neither upload 4.3.29 nor 4.3.30 to Jessie but only the
> minimal patch plus the hostname regex regression patch as I do for
> Stretch and Buster.
Thanks! I have backported
Hi,
Hugo Lefeuvre wrote:
> Anyways, 4.3.29 introduced quite a few regressions[0], we should probably wait
> for 4.3.30.
I would neither upload 4.3.29 nor 4.3.30 to Jessie but only the
minimal patch plus the hostname regex regression patch as I do for
Stretch and Buster.
Also someone needs first
Hi,
> > These are scheduled via the next 9.10 and 10.1 point releases, but it
> > seems
> > we missed to mark it as no-dsa yet, I'll fix that in a bit.
>
> There doesn't appear to be a request for either a buster or stretch update
> yet, for the record.
Anyways, 4.3.29 introduced quite a few
On 2019-08-19 20:54, Moritz Mühlenhoff wrote:
On Mon, Aug 19, 2019 at 02:27:09PM +0200, Hugo Lefeuvre wrote:
Hi,
I just had a look at xymon's vulnerabilities in jessie, stretch and
buster.
Upstream claims some of these issues to be exploitable, among others
the XSS
vulnerability. I plan
Hi Moritz,
> > I see that Moritz and Axel already discussed this on upstream's mailing
> > list,
> > however the tracker has not been updated yet. Is anybody working on it? If
> > not,
> > I can take some time to do it.
>
> These are scheduled via the next 9.10 and 10.1 point releases, but it
On Mon, Aug 19, 2019 at 02:27:09PM +0200, Hugo Lefeuvre wrote:
> Hi,
>
> I just had a look at xymon's vulnerabilities in jessie, stretch and buster.
>
> Upstream claims some of these issues to be exploitable, among others the XSS
> vulnerability. I plan to address at least this one in jessie.
>
Hi,
I just had a look at xymon's vulnerabilities in jessie, stretch and buster.
Upstream claims some of these issues to be exploitable, among others the XSS
vulnerability. I plan to address at least this one in jessie.
I see that Moritz and Axel already discussed this on upstream's mailing