Bug#783148: [pkg-wpa-devel] Bug#783148: wpa: CVE-2015-1863: wpa_supplicant P2P SSID processing vulnerability

2015-04-23 Thread Salvatore Bonaccorso
Hi Stefan, On Thu, Apr 23, 2015 at 07:14:01PM +0200, Stefan Lippers-Hollmann wrote: > Hi > > On 2015-04-23, Salvatore Bonaccorso wrote: > > Hi, > > > > I'm currently preparing the debdiffs for jessie-security and sid > > uploads. > > Thank you for taking care of it, I was about to respond now (

Bug#783148: [pkg-wpa-devel] Bug#783148: wpa: CVE-2015-1863: wpa_supplicant P2P SSID processing vulnerability

2015-04-23 Thread Stefan Lippers-Hollmann
Hi On 2015-04-23, Salvatore Bonaccorso wrote: > Hi, > > I'm currently preparing the debdiffs for jessie-security and sid > uploads. Thank you for taking care of it, I was about to respond now (and am currently testing the patched packages, successfully so far). Be aware that src:wpa 1.0-3+deb7u

Bug#783148: wpa: CVE-2015-1863: wpa_supplicant P2P SSID processing vulnerability

2015-04-23 Thread Salvatore Bonaccorso
Hi, I'm currently preparing the debdiffs for jessie-security and sid uploads. Regards, Salvatore -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Bug#783148: wpa: CVE-2015-1863: wpa_supplicant P2P SSID processing vulnerability

2015-04-22 Thread Salvatore Bonaccorso
Source: wpa Version: 2.3-1 Severity: grave Tags: security upstream patch Justification: user security hole Hi, the following vulnerability was published for wpa. CVE-2015-1863[0]: | P2P SSID processing vulnerability: | A vulnerability was found in how wpa_supplicant uses SSID information | parse