Bug#503401: [Pkg-kde-extras] Bug#503401: try to start command via irc:// handler

2008-10-26 Thread Mark Purcell
On Monday 27 October 2008 04:28:29 Jan Wagner wrote: > While following the thread, I think it maybe an old issue, even if the > exploit states it's valid for 3.4.0. Jan, Raúl Sánchez Siles <[EMAIL PROTECTED]> sent an update to your report stating that whilst it didn't effect upstream 3.4.2, that

Bug#503401: [Pkg-kde-extras] Bug#503401: try to start command via irc:// handler

2008-10-26 Thread Jan Wagner
Hi Mark, On Sunday 26 October 2008 00:27, Mark Purcell wrote: > Are you referring to this old report, or is this a new exploit? > > https://bugs.launchpad.net/ubuntu/+source/kvirc/+bug/123037 Maybe ... I didn't have a deeper look into the issue, I just saw popping up the issue on the kvirc maili

Bug#503401: [Pkg-kde-extras] Bug#503401: try to start command via irc:// handler

2008-10-25 Thread Mark Purcell
On Sunday 26 October 2008 04:00:28 Jan Wagner wrote: > There is an exploit outside which trys to start commands via irc handler. > Dunno if there older versions which are also vuln. Maybe you will also > adjust the severity. Jan, Are you referring to this old report, or is this a new exploit? ht

Bug#503401: try to start command via irc:// handler

2008-10-25 Thread Jan Wagner
Package: kvirc Version: 3.4.0 Severity: serious Tags: security --- Please enter the report below this line. --- There is an exploit outside which trys to start commands via irc handler. Dunno if there older versions which are also vuln. Maybe you will also adjust the severity. http://www.milw0