Package: centericq
Version: 4.21.0-3
Severity: grave
Tags: security
Hi,
Yesterday I discovered the same bug as described on:
https://bugs.gentoo.org/show_bug.cgi?id=100519

All versions of centericq in Debian are vulnerable.
You can find a backtrace, coredump and strace on:
http://nion.modprobe.de/centericq-bug/
Regards Nico


-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.13
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15) (ignored: 
LC_ALL set to [EMAIL PROTECTED])

Versions of packages centericq depends on:
ii  centericq-common              4.21.0-3   A text-mode multi-protocol instant
ii  libc6                         2.3.5-6    GNU C Library: Shared libraries an
ii  libcurl3                      7.14.1-5   Multi-protocol file transfer libra
ii  libgcc1                       1:4.0.2-2  GCC support library
ii  libgnutls12                   1.2.6-1    the GNU TLS library - runtime libr
ii  libgpg-error0                 1.1-4      library for common error values an
ii  libgpgme11                    1.1.0-1    GPGME - GnuPG Made Easy
ii  libidn11                      0.5.18-1   GNU libidn library, implementation
ii  libjpeg62                     6b-10      The Independent JPEG Group's JPEG 
ii  libncurses5                   5.4-9      Shared libraries for terminal hand
ii  libssl0.9.7                   0.9.7g-4   SSL shared libraries
ii  libstdc++6                    4.0.2-2    The GNU Standard C++ Library v3
ii  zlib1g                        1:1.2.3-4  compression library - runtime

Versions of packages centericq recommends:
ii  dillo [www-browser]           0.8.5-1    GTK-based web browser
ii  elinks [www-browser]          0.10.6-1   advanced text-mode WWW browser
ii  links2 [www-browser]          2.1pre18-2 Web browser running in both graphi
ii  lynx [www-browser]            2.8.5-2    Text-mode WWW Browser
ii  mozilla-firefox [www-browser] 1.0.7-1    lightweight web browser based on M
ii  sox                           12.17.8-1  A universal sound sample translato
ii  w3m [www-browser]             0.5.1-4    WWW browsable pager with excellent

-- no debconf information

-- 
Nico Golde - JAB: [EMAIL PROTECTED] | GPG: 0x73647CFF
http://www.ngolde.de | http://www.muttng.org | http://grml.org 
$ route add default roma.it

Attachment: signature.asc
Description: Digital signature

Reply via email to