[Bug 1307230] Re: 3.1.0 daemon infinite loop when no matched user in secrets

2014-04-23 Thread Launchpad Bug Tracker
This bug was fixed in the package rsync - 3.1.0-2ubuntu0.1 --- rsync (3.1.0-2ubuntu0.1) trusty-security; urgency=medium * SECURITY UPDATE: denial of service via invalid username (LP: #1307230) - debian/patches/CVE-2014-2855.diff: avoid infinite wait reading secrets file

[Bug 1307230] Re: 3.1.0 daemon infinite loop when no matched user in secrets

2014-04-17 Thread Marc Deslauriers
** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2014-2855 -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to rsync in Ubuntu. https://bugs.launchpad.net/bugs/1307230 Title: 3.1.0 daemon infinite loop when no matched

[Bug 1307230] Re: 3.1.0 daemon infinite loop when no matched user in secrets

2014-04-15 Thread Brian Murray
** Changed in: rsync (Ubuntu Trusty) Status: New = Triaged ** Changed in: rsync (Ubuntu Trusty) Importance: Undecided = High -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to rsync in Ubuntu.

[Bug 1307230] Re: 3.1.0 daemon infinite loop when no matched user in secrets

2014-04-14 Thread Marc Deslauriers
CVE requested: http://www.openwall.com/lists/oss-security/2014/04/14/5 ** Information type changed from Private Security to Public Security -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to rsync in Ubuntu.