Bug#413629: "'git http-push' had a few buffer overruns."

2007-03-07 Thread Florian Weimer
* Gerrit Pape: > While I think 2c46759 doesn't have a security impact, eecc836 seems to > have, what do you think? I specifically asked about 2c46759, and the patch author thinks there is an impact: http://article.gmane.org/gmane.comp.version-control.git/41038 -- To UNSUBSCRIBE, email to [EMA

Bug#413629: "'git http-push' had a few buffer overruns."

2007-03-06 Thread Florian Weimer
Package: git-core Version: 1.5.0.2-1 Severity: grave Tags: security The relevant commits are, as far as I know: commit eecc8367f4eaafc8449fc08c4e33f3f8ac474469 Author: Eygene Ryabinkin <[EMAIL PROTECTED]> Date: Thu Mar 1 19:09:12 2007 +0300 Another memory overrun in http-push.c Use of