Re: CVE-2006-2314: debian dovecot package vulnerable. (fwd)

2006-06-16 Thread martin f krafft
also sprach martin f krafft [EMAIL PROTECTED] [2006.06.15.1832 +0200]: Have you talked to the stable release team? Maybe they'd be willing to let it into the next update? I am sorry, I accidentally replied to this as if it had come in via a different mailing list. -- Please do not send copies

Re: CVE-2006-2314: debian dovecot package vulnerable. (fwd)

2006-06-15 Thread Jaldhar H. Vyas
Aargh forgot to send this yesterday. Please cc me on any replies, I'm not subscribed to the list. -- Forwarded message -- A question for the stable release managers. In bug #369359, Martin Pitt also sent a patch to fix this problem for the sarge version of Dovecot. When I

Re: CVE-2006-2314: debian dovecot package vulnerable. (fwd)

2006-06-15 Thread martin f krafft
I tend to agree with Joey on the issue, though I do think it's not very nice that the postgresql security upgrade breaks other packages. But going via stable-proposed-updates seems like the right path. Have you talked to the stable release team? Maybe they'd be willing to let it into the next

Re: CVE-2006-2314: debian dovecot package vulnerable. (fwd)

2006-06-15 Thread Martin Schulze
martin f krafft wrote: I tend to agree with Joey on the issue, though I do think it's not very nice that the postgresql security upgrade breaks other packages. But going via stable-proposed-updates seems like the right path. Have you talked to the stable release team? Maybe they'd be