Your message dated Wed, 03 May 2017 19:48:24 +0000
with message-id <[email protected]>
and subject line Bug#861058: fixed in hydra 8.3-3
has caused the Debian Bug report #861058,
regarding hydra: on resume, children die with "double free or corruption"
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
861058: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=861058
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: hydra
Version: 8.0-1
Severity: important

Dear Maintainer,

When launching an example attack on a router:

    hydra -v -f -o found -e nsr -x '1:10:aA1!@#$%^&*()_+=-":;,./?><}{[]'\\\' -l 
admin http-get://192.168.1.1 -m /

then interrupting and resuming with `hydra -R`, all children immediately
die with 'double free or corruption'. It might be relevant that the output
file contains wrong command line argument: "-x 1" instead of what had been
passed.

-- System Information:
Debian Release: 8.7
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable'), (90, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 4.8.0-0.bpo.2-amd64 (SMP w/4 CPU cores)
Locale: LANG=ru_RU.utf8, LC_CTYPE=ru_RU.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)

Versions of packages hydra depends on:
ii  libapr1           1.5.1-3
ii  libaprutil1       1.5.4-1
ii  libc6             2.19-18+deb8u7
ii  libfbclient2      2.5.3.26778.ds4-5+deb8u1
ii  libidn11          1.33-1
ii  libmysqlclient18  5.5.54-0+deb8u1
ii  libncurses5       5.9+20140913-1+b1
ii  libpcre3          2:8.35-3.3+deb8u4
ii  libpq5            9.4.10-0+deb8u1
ii  libssh-4          0.6.3-4+deb8u2
ii  libssl1.0.0       1.0.1t-1+deb8u6
ii  libsvn1           1.8.10-6+deb8u4
ii  libtinfo5         5.9+20140913-1+b1

Versions of packages hydra recommends:
ii  curl  7.38.0-4+deb8u5
ii  wget  1.16-1+deb8u1

Versions of packages hydra suggests:
pn  hydra-gtk  <none>

-- no debconf information

--- End Message ---
--- Begin Message ---
Source: hydra
Source-Version: 8.3-3

We believe that the bug you reported is fixed in the latest version of
hydra, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Lukas Schwaighofer <[email protected]> (supplier of updated hydra package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 03 May 2017 19:06:30 +0200
Source: hydra
Binary: hydra hydra-gtk
Architecture: source
Version: 8.3-3
Distribution: unstable
Urgency: medium
Maintainer: Debian Security Tools Packaging Team 
<[email protected]>
Changed-By: Lukas Schwaighofer <[email protected]>
Description:
 hydra      - very fast network logon cracker
 hydra-gtk  - very fast network logon cracker - GTK+ based GUI
Closes: 853807 861058
Changes:
 hydra (8.3-3) unstable; urgency=medium
 .
   * Team upload.
 .
   [ Gianfranco Costamagna ]
   * Fix newline in manpage (Closes: #853807)
 .
   [ Lukas Schwaighofer ]
   * Allocate required pointer size correctly.  This fixes an issue with
     session restore (`hydra -R`) causing the forked hydra processes to die
     with a "double free or corruption" error. (Closes: #861058)
Checksums-Sha1:
 6effdffe02ad9d37c9316c8853c640f8bb94cf2d 2155 hydra_8.3-3.dsc
 52d118e56b0287149624401e17d3797edcd255d6 15180 hydra_8.3-3.debian.tar.xz
Checksums-Sha256:
 8e6874062fd51bcb98e59d178fe2047307e320c47b10b74771efb0bfc1a177a8 2155 
hydra_8.3-3.dsc
 8e1ad46e380aec0b2004ccf4ab84bd49085ff0fe66fce94da5afa1c1862d9feb 15180 
hydra_8.3-3.debian.tar.xz
Files:
 204ab94dbe7f4420a7518eaf47b6e8a9 2155 net extra hydra_8.3-3.dsc
 5190e1949376bba9103db9b7f9a2f0f9 15180 net extra hydra_8.3-3.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=Hbot
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to