Bug#1014539: squirrel3: CVE-2022-30292

2024-05-13 Thread Pierre-Elliott Bécue
Hello, Matthias Geiger wrote on 07/05/2024 at 00:05:36+0200: > On Thu, 18 Apr 2024 14:40:58 +0200 Matthias Geiger > wrote: > >> >> //I have prepared a fix; however this needs the FTBFS in #997441 >> adressed first. >> >> Will attach a debdiff once that has happened. >> > > See attachement. > >

Bug#1014539: squirrel3: CVE-2022-30292

2024-05-06 Thread Matthias Geiger
On Thu, 18 Apr 2024 14:40:58 +0200 Matthias Geiger wrote: > > //I have prepared a fix; however this needs the FTBFS in #997441 > adressed first. > > Will attach a debdiff once that has happened. > See attachement. best, -- Matthias Geiger Debian Maintainer diff -Nru

Bug#1014539: squirrel3: CVE-2022-30292

2024-04-18 Thread Matthias Geiger
On Thu, 7 Jul 2022 17:55:11 +0200 =?UTF-8?Q?Moritz_M=C3=BChlenhoff?= wrote: > Source: squirrel3 > X-Debbugs-CC: t...@security.debian.org > Severity: grave > Tags: security > > Hi, > > The following vulnerability was published for squirrel3. > > CVE-2022-30292[0]: > | Heap-based buffer overflow

Bug#1014539: squirrel3: CVE-2022-30292

2022-07-07 Thread Moritz Mühlenhoff
Source: squirrel3 X-Debbugs-CC: t...@security.debian.org Severity: grave Tags: security Hi, The following vulnerability was published for squirrel3. CVE-2022-30292[0]: | Heap-based buffer overflow in sqbaselib.cpp in SQUIRREL 3.2 due to | lack of a certain sq_reservestack call.