Bug#307360: oops: Format string vulnerability in database auth handling (CAN-2005-1121)

2005-05-05 Thread Martin Schulze
Moritz Muehlenhoff wrote: Package: oops Severity: grave Tags: security patch sid woody Justification: user security hole [Cc:ing security@, should affect woody as well] It does. A format string vulnerability in the auth() function for SQL database user handling possibly permits

Bug#307360: oops: Format string vulnerability in database auth handling (CAN-2005-1121)

2005-05-02 Thread Moritz Muehlenhoff
Package: oops Severity: grave Tags: security patch sid woody Justification: user security hole [Cc:ing security@, should affect woody as well] [Severity is under the assumption that code execution is possible] A format string vulnerability in the auth() function for SQL database user handling