Bug#842814: memcached: CVE-2016-8706

2016-11-02 Thread Salvatore Bonaccorso
Hi Guillaume, On Thu, Nov 03, 2016 at 03:17:27AM +0100, Guillaume Delacour wrote: > Please see attached the debdiff. > Also, please note that i can't upload myself to security-master as i'm > not a DD nor DM. I actually did already earlier this week, but I have not released yet the DSA text.

Bug#842814: memcached: CVE-2016-8706

2016-11-02 Thread Guillaume Delacour
Please see attached the debdiff. Also, please note that i can't upload myself to security-master as i'm not a DD nor DM. On Tue, 01 Nov 2016 14:08:44 +0100 Salvatore Bonaccorso wrote: > Source: memcached > Version: 1.4.31-1 > Severity: important > Tags: security upstream > >

Bug#842814: memcached: CVE-2016-8706

2016-11-01 Thread Salvatore Bonaccorso
Source: memcached Version: 1.4.31-1 Severity: important Tags: security upstream Hi, the following vulnerability was published for memcached. CVE-2016-8706[0]: |Memcached Server SASL Autentication Remote Code Execution |Vulnerability It is easily reproducible with the TALOS reproducer when