Bug#840338: libass: CVE-2016-7971: large allocation leading to crash

2017-03-04 Thread Salvatore Bonaccorso
Control: notfound -1 0.13.4-1 Hi On Tue, Nov 01, 2016 at 08:13:56PM +0100, Salvatore Bonaccorso wrote: > Control: severity -1 minor > > After feedback from MITRE marked it as unimportant, and lowering the > severity. Reasoning in > http://www.openwall.com/lists/oss-security/2016/11/01/10 This

Bug#840338: libass: CVE-2016-7971: large allocation leading to crash

2016-11-01 Thread Salvatore Bonaccorso
Control: severity -1 minor After feedback from MITRE marked it as unimportant, and lowering the severity. Reasoning in http://www.openwall.com/lists/oss-security/2016/11/01/10 Regards, Salvatore

Bug#840338: libass: CVE-2016-7971: large allocation leading to crash

2016-10-27 Thread Salvatore Bonaccorso
Hi, On Wed, Oct 26, 2016 at 09:46:57PM +0200, Ola Lundqvist wrote: > Hi > > I had a quick look at libass today regarding CVE-2016-7971. > > When I read the discussion thread about this issue it looks like the > problem is not only disputed upstream, but actually disputed by the person >

Bug#840338: libass: CVE-2016-7971: large allocation leading to crash

2016-10-10 Thread Salvatore Bonaccorso
Source: libass Version: 0.13.4-1 Severity: normal Tags: security upstream Hi, the following vulnerability was published for libass. This is to help tracking the issue in the BTS. This CVE is for the issue which remained unfixed in the recent upstream version, and so far has no good solution at