Bug#594415: [Pkg-openssl-devel] Bug#594415: CVE-2010-2939: Double free

2010-08-26 Thread Kurt Roeckx
On Wed, Aug 25, 2010 at 10:03:50PM +0200, Moritz Muehlenhoff wrote: > Package: openssl > Version: 0.9.8o-1 > Severity: grave > Tags: security > > Please see: > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2939 I've put a package stable at: http://people.debian.org/~kroeckx/openssl/ Ku

Bug#594415: CVE-2010-2939: Double free

2010-08-25 Thread Moritz Muehlenhoff
Package: openssl Version: 0.9.8o-1 Severity: grave Tags: security Please see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2939 Solar Designer posted an analysis on oss-security: --- > Georgi Guninski found a double free issue in openssl's client implementation: > http://www.mail-arch