Package: nuauth
Severity: important
Tags: security

Quoting from http://www.nufw.org/+NUFW-1-16-minor-security-fix+.html:

| This is a security release. The NuFW  team has identified a problem
| that could  lead to Denial of Service from legitimate users of the
| authentication service.
|
| The bug was found in user packet parsing. By sending several carefully
| badly formatted packets, an authenticated user can cause a denial  of
| service on  nuauth <= 1.0.15.  The development version,  1.1, is also
| concerned by the  bug, which is corrected on the svn repository.
|
| The NuFW core team recommends users upgrade their nuauth installations.

This has been assigned CVE-2005-3950, please mention it in the changelog
when fixing it.

Cheers,
        Moritz

-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.14-2-686
Locale: LANG=C, [EMAIL PROTECTED] (charmap=ISO-8859-15)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to