Bug#448763: CVE-2007-5690 Buffer overflow in sethdlc.c

2007-10-31 Thread Nico Golde
Hi Tzafrir, * Tzafrir Cohen <[EMAIL PROTECTED]> [2007-10-31 20:03]: > On Wed, Oct 31, 2007 at 07:44:13PM +0100, Nico Golde wrote: [...] > > This is not really a security problem in Debian since > > sethdlc-new is not suid root so it will just segfault. > > > > For further information: > > [0] htt

Bug#448763: CVE-2007-5690 Buffer overflow in sethdlc.c

2007-10-31 Thread Tzafrir Cohen
On Wed, Oct 31, 2007 at 07:44:13PM +0100, Nico Golde wrote: > Package: zaptel > Severity: normal > Tags: security > > Hi, > the following CVE (Common Vulnerabilities & Exposures) id was > published for zaptel. > > CVE-2007-5690[0]: > | Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 m

Bug#448763: CVE-2007-5690 Buffer overflow in sethdlc.c

2007-10-31 Thread Nico Golde
Package: zaptel Severity: normal Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for zaptel. CVE-2007-5690[0]: | Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 might | allow local users to gain privileges via a long device name (interface |