Bug#593299: barnowl: CVE-2010-2725

2010-08-17 Thread Sam Hartman
Will upload 1.6.2. I guess I should do something about testing too. I'll ask -release if they will permit 1.6.2 into testing but kind of expect a no answer, so I'll proabably need to prepare something for tpu. --Sam -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with

Bug#593299: barnowl: CVE-2010-2725

2010-08-17 Thread Michael Gilbert
On Tue, 17 Aug 2010 08:45:26 -0400, Sam Hartman wrote: Will upload 1.6.2. I guess I should do something about testing too. I'll ask -release if they will permit 1.6.2 into testing but kind of expect a no answer, so I'll proabably need to prepare something for tpu. they'll usually grant

Bug#593299: barnowl: CVE-2010-2725

2010-08-16 Thread Michael Gilbert
Package: barnowl Version: 1.5.1-1 Severity: serious Tags: security Hi, the following CVE (Common Vulnerabilities Exposures) id was published for barnowl. CVE-2010-2725[0]: | BarnOwl before 1.6.2 does not check the return code of calls to the | (1) ZPending and (2) ZReceiveNotice functions in