Bug#728989: [Pkg-varnish-devel] Bug#728989: Bug#728989: Bug#728989: varnish: CVE-2013-4484

2013-12-09 Thread Salvatore Bonaccorso
Hi, On Mon, Dec 09, 2013 at 10:12:01AM +0100, Stig Sandbeck Mathisen wrote: > Salvatore Bonaccorso writes: > > > Thanks! Could you please upload them to security-master (needs to be > > built with -sa as it's the first upload for varnish for both > > squeeze-security and wheezy-security). > > I

Bug#728989: [Pkg-varnish-devel] Bug#728989: Bug#728989: Bug#728989: varnish: CVE-2013-4484

2013-12-09 Thread Stig Sandbeck Mathisen
Salvatore Bonaccorso writes: > Thanks! Could you please upload them to security-master (needs to be > built with -sa as it's the first upload for varnish for both > squeeze-security and wheezy-security). It will be done. > Btw, I would have prefered for review if the patch could be applied > se

Bug#728989: [Pkg-varnish-devel] Bug#728989: Bug#728989: varnish: CVE-2013-4484

2013-12-08 Thread Salvatore Bonaccorso
Hi Stig, On Mon, Dec 09, 2013 at 01:22:49AM +0100, Stig Sandbeck Mathisen wrote: > Salvatore Bonaccorso writes: > > > Thanks for fixing this with the 3.0.5-1 upload. Could you please also > > prepare packages for squeeze-security and wheezy-security? I did > > already had a look at wheezy today,

Bug#728989: [Pkg-varnish-devel] Bug#728989: Bug#728989: varnish: CVE-2013-4484

2013-12-08 Thread Stig Sandbeck Mathisen
Salvatore Bonaccorso writes: > Thanks for fixing this with the 3.0.5-1 upload. Could you please also > prepare packages for squeeze-security and wheezy-security? I did > already had a look at wheezy today, attached is proposed debdiff (but > not yet tested apart the testsuite). I've prepared:

Bug#728989: [Pkg-varnish-devel] Bug#728989: varnish: CVE-2013-4484

2013-12-07 Thread Salvatore Bonaccorso
Hi Stig, On Mon, Dec 02, 2013 at 09:46:29PM +0100, Salvatore Bonaccorso wrote: > Hi, > > On Mon, Dec 02, 2013 at 09:52:01PM +0100, Stig Sandbeck Mathisen wrote: > > Salvatore Bonaccorso writes: > > > > > Thanks for fixing this with the 3.0.5-1 upload. Could you please also > > > prepare package

Bug#728989: [Pkg-varnish-devel] Bug#728989: varnish: CVE-2013-4484

2013-12-02 Thread Salvatore Bonaccorso
Hi, On Mon, Dec 02, 2013 at 09:52:01PM +0100, Stig Sandbeck Mathisen wrote: > Salvatore Bonaccorso writes: > > > Thanks for fixing this with the 3.0.5-1 upload. Could you please also > > prepare packages for squeeze-security and wheezy-security? I did > > already had a look at wheezy today, atta

Bug#728989: [Pkg-varnish-devel] Bug#728989: varnish: CVE-2013-4484

2013-12-02 Thread Stig Sandbeck Mathisen
Salvatore Bonaccorso writes: > Thanks for fixing this with the 3.0.5-1 upload. Could you please also > prepare packages for squeeze-security and wheezy-security? I did > already had a look at wheezy today, attached is proposed debdiff (but > not yet tested apart the testsuite). Thanks for the de

Bug#728989: [Pkg-varnish-devel] Bug#728989: varnish: CVE-2013-4484

2013-12-02 Thread Salvatore Bonaccorso
Hi On Thu, Nov 07, 2013 at 08:31:46PM +0100, Stig Sandbeck Mathisen wrote: > Salvatore Bonaccorso writes: > > > Know you are already aware, opening bugreport to keep track of this > > issue. > > Thanks. > > > the following vulnerability was published for varnish. > > > > CVE-2013-4484[0]: > >

Bug#728989: [Pkg-varnish-devel] Bug#728989: varnish: CVE-2013-4484

2013-11-07 Thread Stig Sandbeck Mathisen
Salvatore Bonaccorso writes: > Know you are already aware, opening bugreport to keep track of this > issue. Thanks. > the following vulnerability was published for varnish. > > CVE-2013-4484[0]: > | Varnish before 3.0.5 allows remote attackers to cause a denial of > | service (child-process cra

Bug#728989: varnish: CVE-2013-4484

2013-11-07 Thread Salvatore Bonaccorso
Package: varnish Severity: important Tags: security upstream patch fixed-upstream Hi, Know you are already aware, opening bugreport to keep track of this issue. the following vulnerability was published for varnish. CVE-2013-4484[0]: | Varnish before 3.0.5 allows remote attackers to cause a den