On Sat, Aug 11, 2018 at 02:02:31PM +0200, Salvatore Bonaccorso wrote:
> Source: lldpad
> Version: 1.0.1+git20150824.036e314-4
> Severity: important
> Tags: patch security upstream
> Forwarded: https://github.com/intel/openlldp/pull/7
> 
> Hi,
> 
> The following vulnerability was published for lldpad.
> 
> CVE-2018-10932[0]:
> improper sanitization of shell-escape codes 
> 
> If you fix the vulnerability please also make sure to include the
> CVE (Common Vulnerabilities & Exposures) id in your changelog entry.
> 
> For further information see:
> 
> [0] https://security-tracker.debian.org/tracker/CVE-2018-10932
>     https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10932
> 
> Please adjust the affected versions in the BTS as needed.

I will package the new upstream version that should have this fixed.

-- 
Valentin

Reply via email to