On Wed, Nov 4, 2015 at 1:18 PM, Jens Larsson jens@nsc.liu.se wrote:
Hi,
There was new packages (4.4.3-3) released on Oct 29, but they don't address the CVE-2015-7835 problems. Does anyone have news about a rebuild with this fix applied? Or should we make our own build?
Actually they do includu CVE-2015-7835 (aka XSA-148) -- I just made a mistake when I made the changelog. Sorry about that.
-George