libupnp buffer overflows

2012-05-18 Thread Touko Korpela
Upstream changelog for libupnp (/usr/share/doc/libupnp6/changelog.gz) lists many fixes for buffer overflows in version 1.6.16. Should this be added to tracker and check if CVE number is allocated? -- To UNSUBSCRIBE, email to debian-security-tracker-requ...@lists.debian.org with a subject of

Re: libupnp buffer overflows

2012-05-18 Thread Touko Korpela
On Fri, May 18, 2012 at 08:43:52PM +0200, Florian Weimer wrote: * Touko Korpela: Upstream changelog for libupnp (/usr/share/doc/libupnp6/changelog.gz) lists many fixes for buffer overflows in version 1.6.16. Should this be added to tracker and check if CVE number is allocated? It seems