Bug#496851: yelp: does not correctly handle format strings for certain error messages

2008-08-27 Thread Michael Gilbert
notfound 496851 2.22-1-6 thank you what about a getting a fix for this issue into stable? > yelp (2.22.1-4) unstable; urgency=high > > * SECURITY: New patch, 60_format-string, fixes format string vulnerability; >bump urgency to high; CVE-2008-3533; GNOME #546364; from SVN r3173; >LP: #25

Bug#496851: yelp: does not correctly handle format strings for certain error messages

2008-08-27 Thread Michael Gilbert
Package: yelp Version: 2.22.1-6 Severity: grave Tags: security Justification: user security hole yelp is vulnerable to attacks via badly formatted strings for certain error messages. ubuntu recently released a fix for this problem [1]. the issue is described as: Aaron Grattafiori discovered