Geoff Crompton wrote:
> Security focus list a remote buffer overflow vulnerability.
> http://www.securityfocus.com/bid/17178
>
> I can't find a CVE for it yet, so I cant see if you've got it under
> control on your subversion patch tracking page.

It's the first time I've heard of that. Solar Designer is on vendor-sec
and I assume if it were a grave issue vendors would've been notified
in advance.

> Do you think it likely that a DSA will get fast tracked for this?

The securityfocus database isn't really the greatest source for
vulnerability information, this could very well be false alarm.
Plus, there's been some heavy rework on netfilter lately, so even if
this is genuine this could not affect 2.6.8.

If you find further information on this please keep [EMAIL PROTECTED]
posted.

Cheers,
        Moritz


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to