Bug#842093: libupnp: CVE-2016-8863

2016-12-08 Thread Uwe Kleine-König
Control: tag -1 + patch Hello, On Tue, Oct 25, 2016 at 10:27:24PM +0200, Salvatore Bonaccorso wrote: > the following vulnerability was published for libupnp. The issue is > reproducible easily if libupnp compiled with ASAN and following the > reproducing steps in the upstream bugreport. I didn't

Bug#842093: libupnp: CVE-2016-8863

2016-10-25 Thread Salvatore Bonaccorso
Source: libupnp Version: 1:1.6.19+git20141001-1 Severity: grave Tags: security upstream Hi, the following vulnerability was published for libupnp. The issue is reproducible easily if libupnp compiled with ASAN and following the reproducing steps in the upstream bugreport. CVE-2016-8863[0]: Buffe