I'm currently doing some kind of security review using an automatic tool
to find similar XSS and other security risks. Most of the issues i found
so far could be solved easily.
The tests take some time, i'll send a patch when i'm finished.
Sebastian
Timothy Armes schrieb:
> Seb's preparing a patch.
>
>
> On 11/08/07, *Matt Sicker* <
boards@... <mailto:
boards@...>>
> wrote:
>
> On Thursday 09 August 2007, Gunnar Wrobel wrote:
> > Hi!
> >
> > Gentoo provides websvn as a package and we are currently wondering
> > about the status of this security issue:
> >
> >
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3056> >
> > Is this a relevant issue? Has it been fixed? Or should we remove the
> > package from our distribution?
> >
> > You can find our corresponding bug here:
> >
> >
http://bugs.gentoo.org/show_bug.cgi?id=180879> >
> > Thanks!
>
> Eh, this is kind of an old bug. I'm not sure if it was ever fixed since
> it would require a bit of a change in the code to do so. I'd just wait
> to see what Tim has to say perhaps.
>
> --
> Matt Sicker
>
>
>
>
> --
>
http://www.timothyarmes.com--
Sebastian Petters
www.4wdmedia.de
---------------------------------------------------------------------
To unsubscribe, e-mail:
dev-unsubscribe@...
For additional commands, e-mail:
dev-help@...