GNU bug report logs - #19479
Package manager vulnerable

Previous Next

Package: emacs;

Reported by: Kelly Dean <kelly <at> prtime.org>

Date: Thu, 1 Jan 2015 12:40:02 UTC

Severity: important

Tags: security

Full log


View this message in rfc822 format

From: Kelly Dean <kelly <at> prtime.org>
To: Ivan Shmakov <ivan <at> siamics.net>
Cc: 19479 <at> debbugs.gnu.org, emacs-devel <at> gnu.org
Subject: bug#19479: Emacs package manager vulnerable to replay attacks
Date: Tue, 24 Feb 2015 08:47:23 +0000
Note, I'm not implementing the metadata-replay fix, because it's unlikely my patch would be accepted, so somebody else will need to do it. See my January 11th message to bug #19479 for a description of how to do it.




This bug report was last modified 4 years and 202 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.