oss-sec mailing list archives

Re: CVE request: atheme: security fixes


From: Max Teufel <max () teufelsnetz com>
Date: Tue, 3 May 2016 17:07:20 +0200

Hi,

Use CVE-2014-9773. We don't completely understand issues/397. We think
"This is rejected for Atheme, please consider reporting it to a
downstream fork instead" means that the vulnerability report was
originally rejected, but that decision was reconsidered many months
later.
Indeed, this issue was rejected when development of Atheme was
(temporarily) discontinued. However, after development was resumed, this
decision was reconsidered.

Regards,
Max Teufel


Current thread: