[Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-11 Thread Launchpad Bug Tracker
This bug was fixed in the package libu2f-host - 1.1.4-1ubuntu0.1 --- libu2f-host (1.1.4-1ubuntu0.1) bionic-security; urgency=medium * SECURITY UPDATE: buffer overflow when handling response from device (LP: #1814153) - debian/patches//0002-CVE-2018-20340.patch: check to ensu

[Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-11 Thread Launchpad Bug Tracker
This bug was fixed in the package libu2f-host - 1.1.6-1ubuntu0.1 --- libu2f-host (1.1.6-1ubuntu0.1) cosmic-security; urgency=medium * SECURITY UPDATE: buffer overflow when handling response from device (LP: #1814153) - debian/patches//0002-CVE-2018-20340.patch: check to ensu

[Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-08 Thread Ubuntu Foundations Team Bug Bot
The attachment "Patch for Bug" seems to be a patch. If it isn't, please remove the "patch" flag from the attachment, remove the "patch" tag, and if you are a member of the ~ubuntu-reviewers, unsubscribe the team. [This is an automated message performed by a Launchpad user owned by ~brian-murray,

[Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-08 Thread Manbeer Singh Bhander
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-20340 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1814153 Title: Upcoming Security Release of a Yubico Library (Moderate severity,

Re: [Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-08 Thread Manbeer Singh Bhander
Much appreciated Thanks, Manbeer Singh Bhander Security Technical Program Manager | Yubico On Fri, Feb 8, 2019 at 2:10 PM Steve Beattie wrote: > Making public now that the CRD has passed. > > Upstream commit is https://github.com/Yubico/libu2f- > host/commit/4d490bb2c

[Bug 1814153] Re: Upcoming Security Release of a Yubico Library (Moderate severity, CVSS 6.3) - Unchecked Buffer libu2f-host

2019-02-08 Thread Steve Beattie
Making public now that the CRD has passed. Upstream commit is https://github.com/Yubico/libu2f- host/commit/4d490bb2c528c351e32837fcdaebd998eb5d3f27 . Thanks! ** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of