Bug#774143: malicious HTTP request kills gearmand

2015-01-05 Thread Stig Sandbeck Mathisen
Hello, Thank you for reporting this issue. I see that this bug has been "new/unassigned" on the upstream bug tracker since august last year, and that the gearman upstream has been rather quiet for more than half a year. The patch at http://bazaar.launchpad.net/~1-infe-w/gearmand/1.0/revision/80

Bug#774143: malicious HTTP request kills gearmand

2014-12-29 Thread Alexei Pastuchov
Package: gearman-job-server Version: 1.0.6-4 Status: install ok installed Installed-Size: 268 Architecture: amd64 Severity: serious A bad HTTP request force gearmand (>=0.33 AFAIK) to run in in endless loop until memory out. See bug report https://bugs.launchpad.net/gearmand/+bug/1348865 Bug fix