Package: gnomemeeting
Severity: grave
Tags: security
Justification: user security hole

While fixed for Ekiga, GnomeMeeting is still affected by unauthenticated,
remote format string flaws. I'm attaching the patch I used for stable,
but the proper fix is probably to remove gnomemeeting from Etch:

Why is gnomemeeting still in etch along with the new name Ekiga?
We can't support an arbitrary number of old packages just because
they have been renamed at some point in time; our archive it already
way too big.

Cheers,
        Moritz

-- System Information:
Debian Release: 4.0
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-4-686
Locale: LANG=C, [EMAIL PROTECTED] (charmap=ISO-8859-15)

Attachment: 99_security-CVE-2007-1006.dpatch
Description: application/shellscript

Reply via email to