postgres and CVE-2010-0442

Andrea Venturoli ml at netfence.it
Sun Apr 11 13:34:09 UTC 2010


On 03/25/10 17:28, Mark Linimon wrote:
> On Thu, Mar 25, 2010 at 03:44:20PM +0100, Gary Jennejohn wrote:
>> It's only been a week since it was assigned to the maintainer (girgen@)
>> to look at.
>>
>> It's too soon for a maintainer timeout, although I suppose if this is
>> considered to be an enormous security risk it could be committed without
>> waiting.
>
> I'd say go ahead and commit it.  We often waive the two-week period for
> security problems.

Sorry to step in.
8.4 has been corrected since a while, but what about 8.2 and 8.3?
Is the new (non vulnerable) version going to arrive in the port tree 
anytime soon or should we plan a version upgrade?

  bye & Thanks
	av.


More information about the freebsd-ports mailing list