Moritz Muehlenhoff
2008-Nov-12 21:20 UTC
[Secure-testing-team] Bug#505478: CVE-2008-5030: Buffer overflow
Package: libcdaudio Severity: grave Tags: security Justification: user security hole Hi Daniel, please see http://www.openwall.com/lists/oss-security/2008/11/05/1 http://www.openwall.com/lists/oss-security/2008/11/07/1 I''m attaching the dpatch I''m using for stable-security for your convenience. Please upload to unstable with urgency=high and pester the RMs. Cheers, Moritz -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, ''unstable'') Architecture: i386 (i686) Kernel: Linux 2.6.26-1-686 (SMP w/1 CPU core) Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15 at euro (charmap=ISO-8859-15) Shell: /bin/sh linked to /bin/bash -------------- next part -------------- A non-text attachment was scrubbed... Name: 02-cddb-bufferoverflow.dpatch Type: text/x-shellscript Size: 585 bytes Desc: not available Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20081112/8efcd86c/attachment.bin