Bug#439839: CVE-2007-4398: Multiple CRLF injection vulnerabilities

2007-09-15 Thread Nico Golde
Hi, I intend to 0-day NMU this bug since it is open for quite some time now and easy to fix. The attached patch fixes the issue for weechat-scipts. The patch will be also archived on: http://people.debian.org/~nion/nmu-diff/weechat-scripts_20070425_20070425-0.1.patch Kind regards Nico -- Nico G

Bug#439839: CVE-2007-4398: Multiple CRLF injection vulnerabilities

2007-08-27 Thread Stefan Fritsch
Package: weechat-scripts Version: 20060821 Severity: minor Tags: security A vulnerability has been found in some IRC scripts. From CVE-2007-4398: "Multiple CRLF injection vulnerabilities in the (1) now-playing.rb and (2) xmms.pl 1.1 scripts for weechat allow user-assisted remote attackers to exec