Comment 6 for bug 704674

Revision history for this message
John Dong (jdong) wrote : Re: [Bug 704674] Re: mumble-server creates world readable config file

Patrick,

Definitely it's not an earth-shattering vulnerability, but the Ubuntu process for USNs isn't any more difficult to go through than the SRU process (need the debdiff to be tested and commented as tested on the bug report).

John

On Jan 19, 2011, at 1:31 PM, Patrick Matthäi wrote:

> Am 19.01.2011 18:58, schrieb John Dong:
>> After talking it over with Kees Cook, I think it's best to handle this
>> bug as a security update and go through the Ubuntu Security Team rather
>> than SRU.
>>
>
> Hello,
>
> I already asked the Debian Security Team how I should handle this. In
> their opinion it is nothing for a DSA, but it is fixed with our next
> point release.
>
> --
> /*
> Mit freundlichem Gruß / With kind regards,
> Patrick Matthäi
> GNU/Linux Debian Developer
>
> E-Mail: <email address hidden>
> <email address hidden>
>
> Comment:
> Always if we think we are right,
> we were maybe wrong.
> */
>