oss-sec mailing list archives

Re: BIRD/BIRD2: stack buffer overflow in BGP AS_PATH mask matching, CVE pending


From: Dan Yefihmov <dan () lightwave net ru>
Date: Tue, 02 Jun 2026 21:14:13 +0300

On June 2, 2026 8:27:14 PM GMT+03:00, Stuart Henderson <stu () spacehopper org> wrote:
Yes, I did. That doesn't rule out things like "don't plan to fix because
it's no longer an issue".

Didn't you think that in that case it's considerably more reasonable to explicitly write: "It's already fixed, and the 
fix will be in the next release scheduled at ..." instead of "We don't CURRENTLY plan to fix it"?


Sincerely Yours, Dan.


Current thread: