Bug#451875: Remote vulnerability in ngircd before 0.10.3

2007-11-20 Thread Christoph Biedl
tags patch quit Christoph Biedl wrote... (...) I did some tests: > Can you please check whether the etch version of ngircd is affected > (I'd be really surprised if not) It is. > The > diff between 0.10.2 and 0.10.3 is quite short and seems to apply. See the patch attached for a fix. Works f

Bug#451875: Remote vulnerability in ngircd before 0.10.3

2007-11-18 Thread Christoph Biedl
Package: ngircd Version: 0.10.0-2 Severity: important Tags: security Hi, according to the ngircd homepage there's an issue in ngircd before 0.10.3: | ngIRCd-versions previous to 0.10.3 comprise an error which can be used | (also by remote) to crash the daemon. All installations should be | updat