Re: Some CVE updates

2010-04-14 Thread Moritz Muehlenhoff
On Wed, Apr 14, 2010 at 12:27:49AM +0200, Mike Hommey wrote: Hi, I went through the CVE list on the security tracker, and noted 2 CVEs marked as vulnerable in testing/unstable while it is not the case: - CVE-2009-4630 was fixed during the gecko 1.9.1 development cycle, and as such was

Re: Should security tracker and PTS track terminated oldstable security issue as open?

2010-04-14 Thread Raphael Geissert
Moritz Muehlenhoff wrote: On Wed, Apr 14, 2010 at 07:02:05PM +0900, Hideki Yamane wrote: We don't support oldstable anymore, so not show those bugs as open reduce noise. Déjà vu. The per-package issues count that is fed to the PTS is also bogus for some time (I think it dates back to when