Author: micah Date: 2005-05-18 15:15:58 +0000 (Wed, 18 May 2005) New Revision: 1095 Modified: sarge-checks/CAN/list Log: Added bug number for gaim Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-05-18 14:43:38 UTC (rev 1094) +++ sarge-checks/CAN/list 2005-05-18 15:15:58 UTC (rev 1095) @@ -1626,10 +1626,10 @@ - kernel-source-2.4.27 2.4.27-10 CAN-2005-1262 (Gaim 1.2.1 and earlier allows remote attackers to cause a denial of ...) NOTE: see http://gaim.sourceforge.net/security/ - - gaim 1:1.2.1-1.1 + - gaim 1:1.2.1-1.1 (unfixed; bug #309435) CAN-2005-1261 (Stack-based buffer overflow in the URL parsing function in Gaim before ...) NOTE: see http://gaim.sourceforge.net/security/ - - gaim 1:1.2.1-1.1 + - gaim 1:1.2.1-1.1 (unfixed; bug #309435) CAN-2005-1260 NOTE: reserved CAN-2005-1259
Micah Anderson
2006-Mar-13 12:28 UTC
[Secure-testing-team] Re: [Secure-testing-commits] r1095 - sarge-checks/CAN
On Wed, 18 May 2005, Moritz Muehlenhoff wrote:> Micah Anderson wrote: > > Added bug number for gaim > > CAN-2005-1262 (Gaim 1.2.1 and earlier allows remote attackers to cause a denial of ...) > > NOTE: see http://gaim.sourceforge.net/security/ > > - - gaim 1:1.2.1-1.1 > > + - gaim 1:1.2.1-1.1 (unfixed; bug #309435) > > CAN-2005-1261 (Stack-based buffer overflow in the URL parsing function in Gaim before ...) > > NOTE: see http://gaim.sourceforge.net/security/ > > - - gaim 1:1.2.1-1.1 > > + - gaim 1:1.2.1-1.1 (unfixed; bug #309435) > > Why? gaim is fixed in sid (1.3.0) and Sarge (the above, which contains > backports).In response to this message: http://lists.alioth.debian.org/pipermail/secure-testing-team/2005-May/000111.html I added the bug number. It seems that the bug was then closed after I did this (Date: Wed, 18 May 2005 09:08:00 +0100), so I will remove that now. Micah
Moritz Muehlenhoff
2006-Mar-13 12:28 UTC
[Secure-testing-team] Re: [Secure-testing-commits] r1095 - sarge-checks/CAN
Micah Anderson wrote:> Added bug number for gaim > CAN-2005-1262 (Gaim 1.2.1 and earlier allows remote attackers to cause a denial of ...) > NOTE: see http://gaim.sourceforge.net/security/ > - - gaim 1:1.2.1-1.1 > + - gaim 1:1.2.1-1.1 (unfixed; bug #309435) > CAN-2005-1261 (Stack-based buffer overflow in the URL parsing function in Gaim before ...) > NOTE: see http://gaim.sourceforge.net/security/ > - - gaim 1:1.2.1-1.1 > + - gaim 1:1.2.1-1.1 (unfixed; bug #309435)Why? gaim is fixed in sid (1.3.0) and Sarge (the above, which contains backports). Cheers, Moritz