I'll upload a new upstream version to unstable today with a fix for
CVS-2007-3100 included.
I also prepared a fix for etch.
greetings
philipp
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]
Package: open-iscsi
Tags: security
A minor DoS vulnerability has been discovered in open-iscsi:
| usr/log.c in iscsid in open-iscsi (iscsi-initiator-utils) before
| 2.0-865 uses a semaphore with insecure permissions
| (world-writable/world-readable) for managing log messages using shared
| memory
2 matches
Mail list logo