public inbox for cygwin@cygwin.com
 help / color / mirror / Atom feed
* [Attn] git maintainer: Remote Code Execution for git < 2.7.1
@ 2016-03-16  5:44 Ismail Donmez
  2016-03-16 10:50 ` Adam Dinwoodie
  0 siblings, 1 reply; 4+ messages in thread
From: Ismail Donmez @ 2016-03-16  5:44 UTC (permalink / raw)
  To: cygwin

Hi,

Please see http://www.openwall.com/lists/oss-security/2016/03/15/5 .
Would be nice to update to just released 2.7.3 version.

Regards,
ismail

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [Attn] git maintainer: Remote Code Execution for git < 2.7.1
  2016-03-16  5:44 [Attn] git maintainer: Remote Code Execution for git < 2.7.1 Ismail Donmez
@ 2016-03-16 10:50 ` Adam Dinwoodie
  2016-03-18  8:42   ` Ismail Donmez
  0 siblings, 1 reply; 4+ messages in thread
From: Adam Dinwoodie @ 2016-03-16 10:50 UTC (permalink / raw)
  To: cygwin

On Wed, Mar 16, 2016 at 07:43:54AM +0200, Ismail Donmez wrote:
> Please see http://www.openwall.com/lists/oss-security/2016/03/15/5 .
> Would be nice to update to just released 2.7.3 version.

Ack, thanks for the heads up.  I've been holding off on making a release
while investigating some test failures, but I'll try to make a new build
available either today or tomorrow.

Adam

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [Attn] git maintainer: Remote Code Execution for git < 2.7.1
  2016-03-16 10:50 ` Adam Dinwoodie
@ 2016-03-18  8:42   ` Ismail Donmez
  2016-03-18 10:43     ` Adam Dinwoodie
  0 siblings, 1 reply; 4+ messages in thread
From: Ismail Donmez @ 2016-03-18  8:42 UTC (permalink / raw)
  To: cygwin

Hi,

On Wed, Mar 16, 2016 at 12:50 PM, Adam Dinwoodie <adam@dinwoodie.org> wrote:
> On Wed, Mar 16, 2016 at 07:43:54AM +0200, Ismail Donmez wrote:
>> Please see http://www.openwall.com/lists/oss-security/2016/03/15/5 .
>> Would be nice to update to just released 2.7.3 version.
>
> Ack, thanks for the heads up.  I've been holding off on making a release
> while investigating some test failures, but I'll try to make a new build
> available either today or tomorrow.

Now git 2.7.4 is released with more security fixes:
https://raw.githubusercontent.com/git/git/master/Documentation/RelNotes/2.7.4.txt
:(

ismail

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [Attn] git maintainer: Remote Code Execution for git < 2.7.1
  2016-03-18  8:42   ` Ismail Donmez
@ 2016-03-18 10:43     ` Adam Dinwoodie
  0 siblings, 0 replies; 4+ messages in thread
From: Adam Dinwoodie @ 2016-03-18 10:43 UTC (permalink / raw)
  To: cygwin

On Fri, Mar 18, 2016 at 10:41:41AM +0200, Ismail Donmez wrote:
> On Wed, Mar 16, 2016 at 12:50 PM, Adam Dinwoodie <adam@dinwoodie.org> wrote:
> > On Wed, Mar 16, 2016 at 07:43:54AM +0200, Ismail Donmez wrote:
> >> Please see http://www.openwall.com/lists/oss-security/2016/03/15/5 .
> >> Would be nice to update to just released 2.7.3 version.
> >
> > Ack, thanks for the heads up.  I've been holding off on making a release
> > while investigating some test failures, but I'll try to make a new build
> > available either today or tomorrow.
> 
> Now git 2.7.4 is released with more security fixes:
> https://raw.githubusercontent.com/git/git/master/Documentation/RelNotes/2.7.4.txt
> :(

Yes, I spotted that last night.  I needed to do a rebuild anyway, so
I'll build this version.

Adam

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2016-03-18 10:43 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2016-03-16  5:44 [Attn] git maintainer: Remote Code Execution for git < 2.7.1 Ismail Donmez
2016-03-16 10:50 ` Adam Dinwoodie
2016-03-18  8:42   ` Ismail Donmez
2016-03-18 10:43     ` Adam Dinwoodie

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).