Bug#605484: libapache2-mod-fcgid: stack overwrite vulnerability

2010-12-05 Thread Tatsuki Sugiura
Hello, >>> In Message "Re: Bug#605484: libapache2-mod-fcgid: stack overwrite >>> vulnerability" >>><4cf65673.5050...@complete.org>, >>> John Goerzen said; > > Thank you for noticing me. > > I'll check tomorrow. &

Bug#605484: libapache2-mod-fcgid: stack overwrite vulnerability

2010-12-01 Thread John Goerzen
On 12/01/2010 03:09 AM, Tatsuki Sugiura wrote: Hello, Thank you for noticing me. I'll check tomorrow. BTW, do you know about how to update backports archive? Is it OK to request on debian-backports ML? I sadly know almost nothing about that, but I'm sure it wouldn't hurt to ask on the list.

Bug#605484: libapache2-mod-fcgid: stack overwrite vulnerability

2010-12-01 Thread Tatsuki Sugiura
Hello, Thank you for noticing me. I'll check tomorrow. BTW, do you know about how to update backports archive? Is it OK to request on debian-backports ML? >>> In Message "Bug#605484: libapache2-mod-fcgid: stack overwrite vulnerability" >>>&

Bug#605484: libapache2-mod-fcgid: stack overwrite vulnerability

2010-11-30 Thread John Goerzen
Package: libapache2-mod-fcgid Version: 1:2.2-1 Severity: grave Tags: security Justification: user security hole This was reported in CVE-2010-3872. Information at: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3872 https://issues.apache.org/bugzilla/show_bug.cgi?id=49406 Of particular