Moritz Muehlenhoff
2008-Nov-12 21:20 UTC
[Secure-testing-team] Bug#505478: CVE-2008-5030: Buffer overflow
Package: libcdaudio
Severity: grave
Tags: security
Justification: user security hole
Hi Daniel, please see
http://www.openwall.com/lists/oss-security/2008/11/05/1
http://www.openwall.com/lists/oss-security/2008/11/07/1
I''m attaching the dpatch I''m using for stable-security for
your
convenience. Please upload to unstable with urgency=high and
pester the RMs.
Cheers,
Moritz
-- System Information:
Debian Release: lenny/sid
APT prefers unstable
APT policy: (500, ''unstable'')
Architecture: i386 (i686)
Kernel: Linux 2.6.26-1-686 (SMP w/1 CPU core)
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15 at euro (charmap=ISO-8859-15)
Shell: /bin/sh linked to /bin/bash
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 02-cddb-bufferoverflow.dpatch
Type: text/x-shellscript
Size: 585 bytes
Desc: not available
Url :
http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20081112/8efcd86c/attachment.bin