[csw-maintainers] The dublin release: remaining tasks

Maciej (Matchek) Bliziński maciej at opencsw.org
Thu Feb 9 12:30:19 CET 2012


2012/2/5 Ben Walton <bwalton at opencsw.org>:
> Excerpts from Maciej (Matchek) Bliziński's message of Sun Feb 05 12:05:58 -0500 2012:
>
>> With OpenLDAP rebuilt, we should be now ready to integrate from
>> unstable to testing (== dublin). Does anyone know about anything
>> seriously broken in unstable? Or any other reason not to integrate
>> right now? If so, please respond. If no one responds by Tuesday
>> evening, we will do the big push.
>
> Php 5.3.9 is vulnerable to a remote exploit due to a botched fix for
> the hash collission problems that existed in 5.3.8.  I'm working on
> 5.3.10 right now.  Rafi noticed that the test suite had forked a ton
> of processes (eg: run amok) on unstable9x though.  I've just initiated
> the test suite again and will try to keep an eye on it.

Keep me posted about the php progress. We probably don't want to
release 5.3.9 into dublin. Is version 5.2.9 also vulnerable?

Maciej


More information about the maintainers mailing list