tag #1100 pending
fixed #1100 4.1.0.1
thanks
Hello,
X2Go issue #1100 (src:x2goclient) reported by you has been
fixed in X2Go Git. You can see the changelog below, and you can
check the diff of the fix at:
http://code.x2go.org/gitweb?p=x2goclient.git;a=commitdiff;h=d164a70
The issue will most likely be fixed in src:x2goclient (4.1.0.1).
light+love
X2Go Git Admin (on behalf of the sender of this mail)
---
commit d164a700ba7e243f5038ef925208872f48f9c757
Author: Mike DePaulo <[email protected]>
Date: Thu Mar 30 18:51:41 2017 -0400
Don't override PATH for the actual session or application command. Fixes:
#1100
diff --git a/debian/changelog b/debian/changelog
index 42c1e52..8e71aeb 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -180,6 +180,9 @@ x2goclient (4.1.0.1-0x2go1) UNRELEASED; urgency=medium
default because the installation dir is not writeable by
users)
+ CVE-2017-6542 was fixed
+ - Don't override PATH for the actual session or application
+ command.
+ Fixes: #1100
[ Seth Galitzer ]
* New upstream version (4.1.0.1):
_______________________________________________
x2go-dev mailing list
[email protected]
http://lists.x2go.org/listinfo/x2go-dev