Bug#334606: Debian's version doesn't seem to be affected

2005-10-21 Thread Javier Fernández-Sanguino Peña
On Wed, Oct 19, 2005 at 11:09:58AM +0200, Moritz Muehlenhoff wrote: Hi, as the attack is based on overflowing buf1[] through crafted len values taken from the packet header in BoGetDirection() and this function isn't present in 2.3 Debian doesn't seem to vulnerable. Yes, based on the source

Bug#334606: Debian's version doesn't seem to be affected

2005-10-20 Thread Moritz Muehlenhoff
Hi, as the attack is based on overflowing buf1[] through crafted len values taken from the packet header in BoGetDirection() and this function isn't present in 2.3 Debian doesn't seem to vulnerable. Cheers, Moritz -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of