Bug#1013893: bullseye-pu: package rhonabwy/0.9.13-3+deb11u1

2023-07-24 Thread Jonathan Wiltshire
Control: tag -1 confirmed On Sun, Jun 26, 2022 at 05:36:42PM -0400, Nicolas Mora wrote: > [ Reason ] > Fix possible buffer overflow when decrypting forged jwe with invalid iv or > cypherkey Please go ahead, mentioning the CVE number in the changelog. Thanks, -- Jonathan Wiltshire

Bug#1013893: bullseye-pu: package rhonabwy/0.9.13-3+deb11u1

2022-07-15 Thread Salvatore Bonaccorso
Hi, On Sun, Jun 26, 2022 at 05:36:42PM -0400, Nicolas Mora wrote: > Package: release.debian.org > Severity: normal > Tags: bullseye > User: release.debian@packages.debian.org > Usertags: pu > > [ Reason ] > Fix possible buffer overflow when decrypting forged jwe with invalid iv or >

Bug#1013893: bullseye-pu: package rhonabwy/0.9.13-3+deb11u1

2022-06-26 Thread Nicolas Mora
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu [ Reason ] Fix possible buffer overflow when decrypting forged jwe with invalid iv or cypherkey [ Impact ] program might crash or execute arbitrary code [ Checklist ] [x]