Bug#742706: ruby-net-ldap: CVE-2014-0083

2014-03-28 Thread Salvatore Bonaccorso
Hi Jonas, hi Moritz, On Fri, Mar 28, 2014 at 07:49:18PM +0100, Jonas Genannt wrote: > Hello Moritz, > > thanks for your report. I have checked the version in Debian, and I think > they are not > affected by this SSHA salt problem: > > > http://anonscm.debian.org/gitweb/?p=pkg-ruby-extras/ruby-

Bug#742706: ruby-net-ldap: CVE-2014-0083

2014-03-28 Thread Jonas Genannt
Hello Moritz, thanks for your report. I have checked the version in Debian, and I think they are not affected by this SSHA salt problem: http://anonscm.debian.org/gitweb/?p=pkg-ruby-extras/ruby-net-ldap.git;a=blob;f=lib/net/ldap/password.rb;h=503c7fe6b30870a7a33890f74b1da060cff40399;hb=HEAD Up

Bug#742706: ruby-net-ldap: CVE-2014-0083

2014-03-26 Thread Moritz Muehlenhoff
Package: ruby-net-ldap Severity: grave Tags: security Justification: user security hole Hi, please see https://bugzilla.redhat.com/show_bug.cgi?id=1065086 for details. Cheers, Moritz -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Tr