http://www.securitytracker.com/alerts/2004/May/1010034.html in addition pound 1.5 fails to stop on /etc/init.d/pound stop Workaround: Mark pound-1.6 or 1.7 stable
web-apps herd. Can you mark this version as stable?
I'm looking into it now for you.
Okay, I've marked pound-1.7 stable, and removed pound-1.5 and earlier from CVS too. Do we have an exploit against pound-1.5 that we can test against pound-1.7? Best regards, Stu
http://www.eos-india.net/poc/305-pound.c.txt
Ready for a GLSA
GLSA drafted
GLSA 200405-08