Bug#835386: cracklib2: Buffer overflow processing long words

2016-08-26 Thread Salvatore Bonaccorso
Hi Ben, On Fri, Aug 26, 2016 at 10:34:31PM +0100, Ben Hutchings wrote: > Control: reopen -1 > Control: notfixed -1 2.9.2-3 > > On Thu, 25 Aug 2016 08:35:50 +0200 Salvatore Bonaccorso > wrote: > > Source: cracklib2 > > Version: 2.9.2-1 > > Severity: important > > Tags: security upstream > >  > >

Bug#835386: cracklib2: Buffer overflow processing long words

2016-08-26 Thread Ben Hutchings
Control: reopen -1 Control: notfixed -1 2.9.2-3 On Thu, 25 Aug 2016 08:35:50 +0200 Salvatore Bonaccorso wrote: > Source: cracklib2 > Version: 2.9.2-1 > Severity: important > Tags: security upstream >  > On Mon, Aug 22, 2016 at 10:22:40PM +0200, Daniel Lange wrote: > > Control: tags -1 + patch >

Bug#835386: cracklib2: Buffer overflow processing long words

2016-08-24 Thread Salvatore Bonaccorso
Source: cracklib2 Version: 2.9.2-1 Severity: important Tags: security upstream On Mon, Aug 22, 2016 at 10:22:40PM +0200, Daniel Lange wrote: > Control: tags -1 + patch > > The buffer overflow results from strings that are too short for a strcpy to > always succeed. > > Patch from >