Dear Brian,

I am the maintainer of the Debian package of overkill. A security hole
was discovered in overkill and named CVE-2006-2971: 
"Integer overflow in the recv_packet function in 0verkill
0.16 allows remote attackers to cause a denial of service (daemon crash)
via a UDP packet with fewer than 12 bytes, which results in a long
length value to the crc32 function."

Are you planning to provide a fix for this? If not, we might have to
remove overkill from the Debian archive.

Thanks,
Joachim

-- 
Joachim "nomeata" Breitner
Debian Developer
  [EMAIL PROTECTED] | ICQ# 74513189 | GPG-Keyid: 4743206C
  JID: [EMAIL PROTECTED] | http://people.debian.org/~nomeata

Attachment: signature.asc
Description: Dies ist ein digital signierter Nachrichtenteil

Reply via email to