Bug#688331: boost1.42: CVE-2012-2677

2014-03-31 Thread Jonathan Wiltshire
Package: boost1.42 Dear maintainer, Recently you fixed one or more security problems and as a result you closed this bug. These problems were not serious enough for a Debian Security Advisory, so they are now on my radar for fixing in the following suites through point releases: squeeze (6.0.8)

Bug#688331: boost1.42: CVE-2012-2677

2012-09-21 Thread aw
Package: boost1.42 Severity: grave Tags: security patch Justification: user security hole This is done in unstable, but not in stable up to now so: Please see http://kqueue.org/blog/2012/03/05/memory-allocator-security-revisited/ The upstream fix and a test case is available here: https://svn.b