Message-ID: <email address hidden>
Date: Wed, 19 Jan 2005 21:23:26 +0100
From: Norbert Tretkowski <email address hidden>
To: Javier =?iso-8859-1?Q?Fern=E1ndez-Sanguino_Pe=F1a?= <email address hidden>,
<email address hidden>
Subject: Re: Bug#289560: acknowledged by developer (Bug#289560: fixed in vim 1:6.3-058+1)
Oh well... looks like I did anything wrong what can be done wrong with
this bugreport...=20
* Javier Fern=E1ndez-Sanguino Pe=F1a wrote:
> > * added a new patch (stolen from Ubuntu) which modifies vimspell.s=
h and
> > tcltags.sh so they use mktemp instead of insecure $$ constructio=
n to
> > create temporary files (CAN-2005-0069) (closes: #289560)
>=20
> A few comments and questions regarding this entry:
>=20
> - the scripts seem to be ancient and no longer supported by either thei=
r=20
> authors nor vim maintainer and have been removed upstream.
You're right, it's better to remove those scripts.
> - no credit is given to me, which I would have appreciated
You're right again, sorry that I forgot that.
So, my plans for the next upload...
- remove vimspell.sh and tcltags.sh
- remove the Ubuntu patch
- notice in the changelog that you discovered these problems
I hope I'll find time next weekend for a new upload.
Message-ID: <email address hidden> 1?Q?Fern= E1ndez- Sanguino_ Pe=F1a? = <email address hidden>,
Date: Wed, 19 Jan 2005 21:23:26 +0100
From: Norbert Tretkowski <email address hidden>
To: Javier =?iso-8859-
<email address hidden>
Subject: Re: Bug#289560: acknowledged by developer (Bug#289560: fixed in vim 1:6.3-058+1)
Oh well... looks like I did anything wrong what can be done wrong with
this bugreport...=20
* Javier Fern=E1ndez- Sanguino Pe=F1a wrote:
> > * added a new patch (stolen from Ubuntu) which modifies vimspell.s=
h and
> > tcltags.sh so they use mktemp instead of insecure $$ constructio=
n to
> > create temporary files (CAN-2005-0069) (closes: #289560)
>=20
> A few comments and questions regarding this entry:
>=20
> - the scripts seem to be ancient and no longer supported by either thei=
r=20
> authors nor vim maintainer and have been removed upstream.
You're right, it's better to remove those scripts.
> - no credit is given to me, which I would have appreciated
You're right again, sorry that I forgot that.
So, my plans for the next upload...
- remove vimspell.sh and tcltags.sh
- remove the Ubuntu patch
- notice in the changelog that you discovered these problems
I hope I'll find time next weekend for a new upload.
Regards, Norbert