Bug#574418: barnowl: CVE-2010-0793 buffer overflow

2010-03-18 Thread Sam Hartman
Thanks for the note. Obviously I'll upload new packages. I'm suspecting that this probably can't be used to execute arbitrary code in unstable and testing because barnowl there is built with fortify_source and stack protector. However stable is too old for that. --Sam -- To UNSUBSCRIBE, emai

Bug#574418: barnowl: CVE-2010-0793 buffer overflow

2010-03-17 Thread Michael Gilbert
Package: barnowl Version: 1.0.1-4 Severity: grave Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for barnowl. CVE-2010-0793[0]: | Buffer overflow in BarnOwl before 1.5.1 allows remote attackers to | cause a denial of service (crash) and possibly execute