Summary: | Pine 4.58 fixes security bug | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Rajiv Aaron Manglani (RETIRED) <rajiv> |
Component: | New packages | Assignee: | Rajiv Aaron Manglani (RETIRED) <rajiv> |
Status: | RESOLVED FIXED | ||
Severity: | critical | CC: | aliz, grandmasterlinux, net-mail+disabled, security, seemant, spock |
Priority: | High | ||
Version: | 1.4 | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- | |
Attachments: | Patch that works with pine 4.58 |
Description
Rajiv Aaron Manglani (RETIRED)
![]() Created attachment 17501 [details, diff]
Patch that works with pine 4.58
lets watch this patch Michal 'Spock' Januszewski Are you the author of this patch? If not can you please append a url where it comes from? looks like that patch might come from: http://www.math.washington.edu/~chappa/pine/ raker: in the pine ebuild changelog you said "A hand picked group of patches from the chappa collection." ... is this still the case? could you hand pick them again from chappa's all.tar.gz for 4.58 ? thanks I'm not the author of the attached patch. It's pine-4.56-chappa-20030609 (from Portage) remade so that it would work with pine-4.58. Since there are now versions of these patches for 4.58 on chappa's site, I believe it would be best to use them instead of the attached one. i just checked in pine-4.58.ebuild. i removed the chappa patches for now since an exploit for pine =< 4.56 was just published. a GLSA will follow soon. just checked in pine-4.58-r1.ebuild, keyworded for testing. it includes chappa's 'all' set of patches for pine as on 2003-09-15. i am not sure if the 'all' set includes all of the patches that were hand picked by raker and included with the ebuilds up until now. so please test! glsa was sent out: http://forums.gentoo.org/viewtopic.php?t=84922 on 9/16/2003. |