Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-19 Thread Thibaut VARENE
On Sat, May 19, 2012 at 9:55 AM, Jonathan Wiltshire wrote: > On Thu, May 17, 2012 at 07:20:37AM -0700, Thibaut VARÈNE wrote: >> I've no idea how to fix this in stable and I'm currently in vacation with >> limited Internet access... > > I'll take care of it (I wish you'd asked for help sooner). T

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-19 Thread Jonathan Wiltshire
On Thu, May 17, 2012 at 07:20:37AM -0700, Thibaut VARÈNE wrote: > I've no idea how to fix this in stable and I'm currently in vacation with > limited Internet access... I'll take care of it (I wish you'd asked for help sooner). For your reference: http://www.debian.org/doc/manuals/developers-ref

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-17 Thread Florian Mayer
I can try and apply the fix suggested in the announcement, see if it compiles and post the diff, if that helps. On Thu, May 17, 2012 at 4:20 PM, Thibaut VARÈNE wrote: > I've no idea how to fix this in stable and I'm currently in vacation with > limited Internet access... > > Le 17 mai 2012 à 05:

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-17 Thread Thibaut VARÈNE
I've no idea how to fix this in stable and I'm currently in vacation with limited Internet access... Le 17 mai 2012 à 05:33, Florian Mayer a écrit : > Hello! I've been wondering why this isn't fixed in stable yet and > there's no DSA about it either. > > -- To UNSUBSCRIBE, email to debian-

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-17 Thread Florian Mayer
Hello! I've been wondering why this isn't fixed in stable yet and there's no DSA about it either. -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-16 Thread Thibaut VARÈNE
The update is ready I'm about to upload it. Thx Le 16 mai 2012 à 06:56, Jonathan Wiltshire a écrit : > Package: pidgin-otr > Version: 3.2.0-5 > Severity: serious > Tags: security upstream patch > > Hi, > the following CVE (Common Vulnerabilities & Exposures) id was > published for pidgin-otr. >

Bug#673154: CVE-2012-2369: Format string security vulnerability

2012-05-16 Thread Jonathan Wiltshire
Package: pidgin-otr Version: 3.2.0-5 Severity: serious Tags: security upstream patch Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for pidgin-otr. CVE-2012-2369[0]: | Versions 3.2.0 and earlier of the pidgin-otr plugin contain a format | string security flaw. This f