Bug#337972: libungif4g: buffer overflows and NULL dereference

2005-11-07 Thread Michael Fedrowitz
On Mon, Nov 07, 2005 at 11:51:50AM -0500, Martin Pitt wrote: Hi, > Chris Evans discovered several buffer overflows (CVE-2005-3350) and a > NULL dereference (CVE-2005-2974), which were fixed upstream in 4.1.4. > > Here is the Ubuntu patch which only contains the security relevant > bits: thanks

Bug#334180: dovecot-omapd: All IMAP logings are non-functional after upgrade

2005-10-30 Thread Michael Fedrowitz
On Sun, 2005-10-30 at 19:40 +0100, Kurt Roeckx wrote: Hi, > So it seems the version in sid already was build with > libssl0.9.8. I guess I didn't upgrade my chroot. > > So I can close this now, since it should be fixed. no, still the same: Oct 31 00:11:08 varda dovecot: imap-login: Can't loa

Bug#334180: dovecot-omapd: All IMAP logings are non-functional after upgrade

2005-10-27 Thread Michael Fedrowitz
On Wed, Oct 26, 2005 at 12:14:47AM +0200, Kurt Roeckx wrote: Hi, > I've been trying to reproduce this, but I can't. Everything > seems to be working perfectly for me. > > Can someone please try to explain me how I should reproduce the > error? do you by chance have zlib1g-dev installed on you

Bug#320357: fetchmail: CAN-2005-2335 not fixed in sid either

2005-07-30 Thread Michael Fedrowitz
retitle 320357 fetchmail: CAN-2005-2335 unfixed in unstable, stable and possibly oldstable tags 320357 + patch thanks Hi, the attached patch seems to fix it. Want me to NMU? -Michael --- rules.orig 2005-07-30 11:20:27.0 +0200 +++ rules 2005-07-30 11:42:13.0 +0200 @@ -108,7 +108

Bug#320357: fetchmail: CAN-2005-2335 not fixed in sid either

2005-07-30 Thread Michael Fedrowitz
Hi, this isn't fixed in sid either, because debian/rules is fucked up and only applies the patch after the build. I just noticed this by chance because I suddenly got bitten by the old fetchsizelimit bug again (for APOP) and started to investigate... And why is there an old random unrelated bugfi