From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (qmail 14929 invoked by alias); 18 Oct 2011 00:45:41 -0000 Received: (qmail 14919 invoked by uid 22791); 18 Oct 2011 00:45:40 -0000 X-SWARE-Spam-Status: No, hits=-2.7 required=5.0 tests=AWL,BAYES_00,DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,FREEMAIL_FROM,RCVD_IN_DNSWL_LOW,T_TO_NO_BRKTS_FREEMAIL X-Spam-Check-By: sourceware.org Received: from mail-ww0-f45.google.com (HELO mail-ww0-f45.google.com) (74.125.82.45) by sourceware.org (qpsmtpd/0.43rc1) with ESMTP; Tue, 18 Oct 2011 00:45:26 +0000 Received: by wwf5 with SMTP id 5so58048wwf.2 for ; Mon, 17 Oct 2011 17:45:24 -0700 (PDT) MIME-Version: 1.0 Received: by 10.216.47.11 with SMTP id s11mr80825web.24.1318898723395; Mon, 17 Oct 2011 17:45:23 -0700 (PDT) Received: by 10.216.37.81 with HTTP; Mon, 17 Oct 2011 17:45:23 -0700 (PDT) In-Reply-To: <1318790948.7624.14.camel@YAAKOV04> References: <1318790948.7624.14.camel@YAAKOV04> Date: Tue, 18 Oct 2011 00:45:00 -0000 Message-ID: Subject: Re: SECURITY: gnutls From: Chris Sutcliffe To: cygwin-apps@cygwin.com Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable X-IsSubscribed: yes Mailing-List: contact cygwin-apps-help@cygwin.com; run by ezmlm Precedence: bulk Sender: cygwin-apps-owner@cygwin.com List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Mail-Followup-To: cygwin-apps@cygwin.com X-SW-Source: 2011-10/txt/msg00043.txt.bz2 On 16 October 2011 14:49, Yaakov (Cygwin/X) wrote: > Dr. Volker Zell, > > gnutls 2.8.6 is susceptible to CVE-2009-3555. =A0This has been fixed since > 2.10.0, but the current stable releases are 2.12.11 (ABI-compatible with > 2.8.6) and 3.0.4 (which breaks ABI compatibility). =A0For now, please > release 2.12.11 ASAP for all the apps currently dependent on > libgnutls26. Is Dr. Volker Zell still active? The last post I can find from him was from June of last year: http://sourceware.org/ml/cygwin/2010-06/msg00009.html Chris --=20 Chris Sutcliffe http://emergedesktop.org http://www.google.com/profiles/ir0nh34d