Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-19 Thread Martin Schulze
Martin Schulze wrote: > --- mod_auth_radius.c~2003-03-24 20:16:15.0 +0100 > +++ mod_auth_radius.c 2005-01-13 13:01:42.0 +0100 > @@ -971,8 +971,11 @@ find_attribute(radius_packet_t *packet, >} >return attr; > } > -#define radcpy(STRING, ATTR) {memcpy(STRING, ATTR->d

Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-13 Thread Martin Schulze
Fabio Massimo Di Nitto wrote: > I did talk with upstream that is working on a fix and will release soon. Great. > The patch looks ok, but i am going to give one or two days to upstream > before going with this fix. Feel free to forward upstream. Regards, Joey -- MIME - broken solutio

Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-13 Thread Martin Schulze
Fabio Massimo Di Nitto wrote: > The package was not released with woody. I am working right now to check sid. What about the attached patch? Regards, Joey -- MIME - broken solution for a broken design. -- Ralf Baechle Please always Cc to me when replying to me on the lists. --- mod_a

Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-13 Thread Fabio Massimo Di Nitto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Martin Schulze wrote: | Fabio Massimo Di Nitto wrote: | |>The package was not released with woody. I am working right now to check sid. | | | What about the attached patch? | | Regards, | | Joey | | | |

Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-13 Thread Fabio Massimo Di Nitto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 tag 289976 -woody stop Martin Schulze wrote: | Package: libapache-mod-auth-radius | Version: 1.5.7-5 | Severity: grave | Tags: woody sid security | | I haven't checked if this problem exists in the Debian package. Please check. | If the Debian package

Processed: Re: Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-13 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tag 289976 -woody Bug#289976: [EMAIL PROTECTED]: Apache mod_auth_radius remote integer overflow] Tags were: security sid woody Tags removed: woody > stop Stopping processing here. Please contact me if you need assistance. Debian bug tracking system a

Bug#289976: [exposed@lss.hr: Apache mod_auth_radius remote integer overflow]

2005-01-11 Thread Martin Schulze
Package: libapache-mod-auth-radius Version: 1.5.7-5 Severity: grave Tags: woody sid security I haven't checked if this problem exists in the Debian package. Please check. If the Debian package is fixed, too old or too new, please close this bug report. Regards, Joey - Forwarded m