Bug#942165: CVE-2019-14857

2019-11-15 Thread Salvatore Bonaccorso
Hi both Moritz! On Fri, Oct 18, 2019 at 09:33:47AM +0200, Moritz Mühlenhoff wrote: > On Wed, Oct 16, 2019 at 11:19:36AM +0200, Moritz Schlarb wrote: > > Hi everyone, > > > > I have prepared a backport of the patches for the version packaged in > > Buster: > >

Bug#942165: CVE-2019-14857

2019-10-18 Thread Moritz Mühlenhoff
On Wed, Oct 16, 2019 at 11:19:36AM +0200, Moritz Schlarb wrote: > Hi everyone, > > I have prepared a backport of the patches for the version packaged in > Buster: > https://salsa.debian.org/debian/libapache2-mod-auth-openidc/commit/17e31b94a71ef02d1417bee6b0ef7b7379b40375 > > If you deem

Bug#942165: CVE-2019-14857

2019-10-16 Thread Moritz Schlarb
Same for stretch: https://salsa.debian.org/debian/libapache2-mod-auth-openidc/commit/e0b3eac21212b12562721ab3c903c4f24eef9e8f On 16.10.19 11:19, Moritz Schlarb wrote: > Hi everyone, > > I have prepared a backport of the patches for the version packaged in > Buster: >

Bug#942165: CVE-2019-14857

2019-10-16 Thread Moritz Schlarb
Hi everyone, I have prepared a backport of the patches for the version packaged in Buster: https://salsa.debian.org/debian/libapache2-mod-auth-openidc/commit/17e31b94a71ef02d1417bee6b0ef7b7379b40375 If you deem necessary and sufficient, please release as a security update or otherwise I'll try

Bug#942165: CVE-2019-14857

2019-10-11 Thread Moritz Muehlenhoff
Package: libapache2-mod-auth-openidc Severity: grave Tags: security Please see: https://groups.google.com/forum/#!topic/mod_auth_openidc/boy1Ba3Gdk4 https://github.com/zmartzone/mod_auth_openidc/commit/5c15dfb08106c2451c2c44ce7ace6813c216ba75