Comment 3 for bug 1835896

Revision history for this message
Alex Murray (alexmurray) wrote :

Is the temporary patch https://github.com/FreeTDS/freetds/commit/0df4eb82a0e3ff844e373d7c9f9c6c813925e2ac expected to be the final and authoritative fix for this issue? In general, we wouldn't normally keep security bugs private when the fix is already out-in-the-open since smart hackers can usually reverse engineer these things to deduce the presence of a bug just from the commit which fixes it. However, this is your bug so you get to make the call - although once CVE is announced publicly then the bug should become public too regardless.