Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-22 Thread Salvatore Bonaccorso
Hi, On Wed, May 20, 2020 at 09:22:11AM +0100, Luca Boccassi wrote: > On Tue, 2020-05-19 at 19:34 +0200, Moritz Mühlenhoff wrote: > > On Tue, May 19, 2020 at 11:59:05AM +0100, Luca Boccassi wrote: > > > On Tue, 2020-05-19 at 12:51 +0200, Moritz Mühlenhoff wrote: > > > > On Tue, May 19, 2020 at

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-20 Thread Luca Boccassi
On Tue, 2020-05-19 at 19:34 +0200, Moritz Mühlenhoff wrote: > On Tue, May 19, 2020 at 11:59:05AM +0100, Luca Boccassi wrote: > > On Tue, 2020-05-19 at 12:51 +0200, Moritz Mühlenhoff wrote: > > > On Tue, May 19, 2020 at 10:02:46AM +0100, Luca Boccassi wrote: > > > > On Thu, 14 May 2020 22:57:44

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-19 Thread Moritz Mühlenhoff
On Tue, May 19, 2020 at 11:59:05AM +0100, Luca Boccassi wrote: > On Tue, 2020-05-19 at 12:51 +0200, Moritz Mühlenhoff wrote: > > On Tue, May 19, 2020 at 10:02:46AM +0100, Luca Boccassi wrote: > > > On Thu, 14 May 2020 22:57:44 +0100 Luca Boccassi < > > > bl...@debian.org > > > > wrote: > > > > On

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-19 Thread Luca Boccassi
On Tue, 2020-05-19 at 12:51 +0200, Moritz Mühlenhoff wrote: > On Tue, May 19, 2020 at 10:02:46AM +0100, Luca Boccassi wrote: > > On Thu, 14 May 2020 22:57:44 +0100 Luca Boccassi < > > bl...@debian.org > > > wrote: > > > On Thu, 2020-05-14 at 18:50 +0100, Luca Boccassi wrote: > > > > Package:

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-19 Thread Moritz Mühlenhoff
On Tue, May 19, 2020 at 10:02:46AM +0100, Luca Boccassi wrote: > On Thu, 14 May 2020 22:57:44 +0100 Luca Boccassi < > bl...@debian.org > > wrote: > > On Thu, 2020-05-14 at 18:50 +0100, Luca Boccassi wrote: > > > Package: openconnect > > > Version: 6.00-1 > > > Severity: important > > > Tags:

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-19 Thread Luca Boccassi
On Thu, 14 May 2020 22:57:44 +0100 Luca Boccassi < bl...@debian.org > wrote: > On Thu, 2020-05-14 at 18:50 +0100, Luca Boccassi wrote: > > Package: openconnect > > Version: 6.00-1 > > Severity: important > > Tags: security > > > > Openconnect is affected by a buffer overflow in certificate

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-14 Thread Luca Boccassi
On Thu, 2020-05-14 at 18:50 +0100, Luca Boccassi wrote: > Package: openconnect > Version: 6.00-1 > Severity: important > Tags: security > > Openconnect is affected by a buffer overflow in certificate handling, > that goes back at least to 6.00-1 (old-old-stable). > > Fixed upstream by: > >

Bug#960620: openconnect: buffer overflow in certificate handling (CVE-2020-12823)

2020-05-14 Thread Luca Boccassi
Package: openconnect Version: 6.00-1 Severity: important Tags: security Openconnect is affected by a buffer overflow in certificate handling, that goes back at least to 6.00-1 (old-old-stable). Fixed upstream by: https://gitlab.com/openconnect/openconnect/-/merge_requests/108 -- Kind regards,