Bug#912414: fwupd: Impossible to refresh metadata from remote server

2020-06-09 Thread Justin Steven
This is still not fixed. fwupd 0.7.4-2 ships with a DownloadURI value (s3.amazonaws.com) that points to an unmaintained and unsupported metadata repository. CVE-2020-10759 (#962517) was made readily exploitable against Debian Stretch users due to this stale value. Now that the S3 bucket is back i

Bug#678512: ruby-eventmachine: crashes when using IPv6 socket

2015-11-23 Thread Justin Steven
tags 678512 + security thanks I'm not certain, but I have an inkling this is caused by the bug fixed in https://github.com/eventmachine/eventmachine/pull/502 which introduced a memory leak which was fixed in https://github.com/eventmachine/eventmachine/pull/586 We are seeing identical overflows i