oss-sec mailing list archives

Re: CVE request: ppthtml heap-based buffer overflow


From: Michael Gilbert <mgilbert () debian org>
Date: Wed, 13 Nov 2013 23:49:07 -0500

On Wed, Nov 13, 2013 at 11:11 PM, Murray McAllister wrote:
(Cc'ing Salvatore in case there is more information in the Debian report
that I cannot see.)

FYI, there is no non-public information anywhere in the debian bug
tracking system.  Item 3 of the social contract [0] necessitates that
kind of transparency.

Best wishes,
Mike

[0] http://www.debian.org/social_contract


Current thread: