Bug#979724: buster-pu: package libmaxminddb/1.3.2-1+deb10u1

2021-01-19 Thread Salvatore Bonaccorso
Hi Faidon, On Sun, Jan 17, 2021 at 08:54:29PM +0200, Faidon Liambotis wrote: > On Sat, Jan 16, 2021 at 06:00:00PM +, Adam D. Barratt wrote: > > Control: tags -1 + confirmed > > > > On Sun, 2021-01-10 at 21:39 +0200, Faidon Liambotis wrote: > > > This is an buster proposed update to fix CVE-20

Bug#979724: buster-pu: package libmaxminddb/1.3.2-1+deb10u1

2021-01-17 Thread Faidon Liambotis
On Sat, Jan 16, 2021 at 06:00:00PM +, Adam D. Barratt wrote: > Control: tags -1 + confirmed > > On Sun, 2021-01-10 at 21:39 +0200, Faidon Liambotis wrote: > > This is an buster proposed update to fix CVE-2020-28241: > > > libmaxminddb before 1.4.3 has a heap-based buffer over-read in > > > dum

Bug#979724: buster-pu: package libmaxminddb/1.3.2-1+deb10u1

2021-01-16 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2021-01-10 at 21:39 +0200, Faidon Liambotis wrote: > This is an buster proposed update to fix CVE-2020-28241: > > libmaxminddb before 1.4.3 has a heap-based buffer over-read in > > dump_entry_data_list in maxminddb.c. > > The security team has marked the CVE a

Bug#979724: buster-pu: package libmaxminddb/1.3.2-1+deb10u1

2021-01-10 Thread Faidon Liambotis
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu Hi there, This is an buster proposed update to fix CVE-2020-28241: | libmaxminddb before 1.4.3 has a heap-based buffer over-read in | dump_entry_data_list in maxminddb.c. The secur