Bug#640960: CVE-?????: broken CTCP parsing can be used to crash the core

2011-09-09 Thread Thomas Müller
Hi, thanks for the notice. I'll prepare a new package upload tonight. Thanks, Thomas Am Freitag, den 09.09.2011 um 0:58 schrieb Timo Juhani Lindfors: Package: quassel Version: 0.6.3-2 Severity: important Tags: security When people send me 0010 75 74 61 73 21 7a 7a 40 31 37 38

Bug#640960: CVE-?????: broken CTCP parsing can be used to crash the core

2011-09-09 Thread Timo Juhani Lindfors
Hi, it seems ubuntu people backported the fix against 0.6.1: https://launchpadlibrarian.net/79454811/quassel_0.6.1-0ubuntu1_0.6.1-0ubuntu1.2.diff.gz maybe this could help with the squeeze backport? -Timo -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject

Bug#640960: CVE-?????: broken CTCP parsing can be used to crash the core

2011-09-08 Thread Timo Juhani Lindfors
Package: quassel Version: 0.6.3-2 Severity: important Tags: security When people send me 0010 75 74 61 73 21 7a 7a 40 31 37 38 2d 33 37 2d 31 |utas!zz@178-37-1| 0020 30 34 2d 34 32 2e 61 64 73 6c 2e 69 6e 65 74 69 |04-42.adsl.ineti| 0030 61 2e 70 6c 20 4a 4f 49 4e 20 23 71 75