From mboxrd@z Thu Jan 1 00:00:00 1970 From: rennes <rennes@openmailbox.org> Subject: [security] gnome-session update required Date: Fri, 16 Sep 2016 18:02:54 -0500 Message-ID: <1474066974.31972.2.camel@openmailbox.org> References: <mailman.2058.1474055455.22737.guix-devel@gnu.org> Mime-Version: 1.0 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: 7bit Return-path: <guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org> Received: from eggs.gnu.org ([2001:4830:134:3::10]:47587) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from <rennes@openmailbox.org>) id 1bl2Cu-0000zL-6A for guix-devel@gnu.org; Fri, 16 Sep 2016 19:06:09 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from <rennes@openmailbox.org>) id 1bl2Cq-0004HH-TT for guix-devel@gnu.org; Fri, 16 Sep 2016 19:06:08 -0400 Received: from smtp22.openmailbox.org ([62.4.1.56]:42609 helo=smtp7.openmailbox.org) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from <rennes@openmailbox.org>) id 1bl2Cq-0004Gk-K2 for guix-devel@gnu.org; Fri, 16 Sep 2016 19:06:04 -0400 In-Reply-To: <mailman.2058.1474055455.22737.guix-devel@gnu.org> List-Id: "Development of GNU Guix and the GNU System distribution." <guix-devel.gnu.org> List-Unsubscribe: <https://lists.gnu.org/mailman/options/guix-devel>, <mailto:guix-devel-request@gnu.org?subject=unsubscribe> List-Archive: <http://lists.gnu.org/archive/html/guix-devel/> List-Post: <mailto:guix-devel@gnu.org> List-Help: <mailto:guix-devel-request@gnu.org?subject=help> List-Subscribe: <https://lists.gnu.org/mailman/listinfo/guix-devel>, <mailto:guix-devel-request@gnu.org?subject=subscribe> Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" <guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org> To: guix-devel@gnu.org Hello, > Will some helpful GNOME user update gnome-session to 3.20.2? > > There is a heap overflow in the version of gnome-session that we > package: > https://bugzilla.gnome.org/show_bug.cgi?id=768441 > http://seclists.org/oss-sec/2016/q3/526 I would like to help but do not understand what needs to be done?