Please sync git-core 1:1.5.6.3-1.1 from Debian testing/unstable main

Bug #248750 reported by Phil Sung
262
Affects Status Importance Assigned to Milestone
git-core (Ubuntu)
Fix Released
Wishlist
Unassigned
Nominated for Intrepid by Anders Kaseorg

Bug Description

Binary package hint: git-core

The latest version of git-core in Intrepid is 1:1.5.4.3-1ubuntu2, but Debian has 1:1.5.6.3-1.1.

Debian changelog:
http://packages.debian.org/changelogs/pool/main/g/git-core/git-core_1.5.6.3-1.1/changelog

Thanks in advance.

[Anders Kaseorg: changed merge request to sync request; see comment #4]

Revision history for this message
Connor Imes (ckimes) wrote :

Confirmed, thank you.

Changed in git-core:
importance: Undecided → Wishlist
status: New → Confirmed
Revision history for this message
Sarah Kowalik (hobbsee-deactivatedaccount) wrote :

Are you actually planning to do this merge?

If not, please don't file bugs like this - we have other ways to track this stuff.

Changed in git-core:
status: Confirmed → Incomplete
Revision history for this message
Phil Sung (psung) wrote : Re: [Bug 248750] Re: Please merge git-core 1:1.5.6.2-1 from Debian

On Wed, Jul 16, 2008 at 04:14, Sarah Hobbs <email address hidden> wrote:
> If not, please don't file bugs like this - we have other ways to track
> this stuff.

Ah, didn't know that. I apologize for the noise!

Revision history for this message
Anders Kaseorg (andersk) wrote : Re: Please merge git-core 1:1.5.6.2-1 from Debian

No merge is necessary. The Ubuntu patch should be dropped, since tk8.5 and tcl8.5 are all available in Ubuntu as of Hardy; furthermore, gitk is much more usable with tk8.5’s support for antialiased fonts. I recompiled sid’s git-core 1.5.6.3-1 on intrepid (amd64), and it works fine. Is there anything else I can do to help?

Changed in git-core:
status: Incomplete → Confirmed
Anders Kaseorg (andersk)
description: updated
Revision history for this message
Laurent Bigonville (bigon) wrote : Re: Please sync git-core 1:1.5.6.3-1 from Debian testing/unstable main

anyone working on this bug?

Revision history for this message
Laurent Bigonville (bigon) wrote :

There is a 1:1.5.6.3-1.1 version available in debian which fix bug CVE-2008-3546 (see bug 256617)

Revision history for this message
Laurent Bigonville (bigon) wrote :
Anders Kaseorg (andersk)
description: updated
Revision history for this message
Anders Kaseorg (andersk) wrote :

Is anyone working on this? Can someone change the priority to something other than “Wishlist” since this is now a security bug?

Phil Sung (psung)
Changed in git-core:
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.