Comment 6 for bug 317052

Revision history for this message
In , Todd (todd-redhat-bugs) wrote :

(In reply to comment #1)
> Looking at this, am I correct that EL-4 isn't vulnerable to either of these
> since it includes git-1.5.4.7?

Sorry for being dense there. I realized a bit later that 1.5.4.7 indeed was vulnerable to both issues. (I read the "first occurred in ..." part as when the vulnerability first occurred, not when the commit which fixes it occurred.)

Are there testcases available to verify the fixes? The commits from git.git require a little massaging to apply to 1.5.4.7, so checking that the issues are fixed would be good.