Bug#614785: Found too in oldstable/lenny?

2011-02-24 Thread Salvatore Bonaccorso
found 614785 0.6.23-3lenny2 thanks Hi! I can reproduce this too on lenny, can someone confirm that? Up to date lenny system with avahi-daemon 0.6.23-3lenny2. Bests Salvatore signature.asc Description: Digital signature

Bug#614785: Found too in oldstable/lenny?

2011-02-24 Thread Alexander Kurtz
Hi everybody, Am Mittwoch, den 23.02.2011, 16:13 +0100 schrieb Michael Biebl: A fixed package has been uploaded to unstable and stable-security (squeeze). First the good news: I can confirm that upgrading *all* avahi packages to 0.6.28-4 fixes the problem (only upgrading avahi-daemon does

Bug#614785: Found too in oldstable/lenny?

2011-02-24 Thread Michael Biebl
Am 24.02.2011 15:48, schrieb Alexander Kurtz: So, the code which introduced this vulnerability (CVE-2011-1002[1]) was actually added[2] when fixing another vulnerability (CVE-2010-2244[3]). As a consequence, lenny IS indeed vulnerable and needs to be fixed too. Correct. I uploaded a fixed

Bug#614785: Found too in oldstable/lenny?

2011-02-24 Thread Michael Biebl
Am 24.02.2011 15:52, schrieb Michael Biebl: Am 24.02.2011 15:48, schrieb Alexander Kurtz: So, the code which introduced this vulnerability (CVE-2011-1002[1]) was actually added[2] when fixing another vulnerability (CVE-2010-2244[3]). As a consequence, lenny IS indeed vulnerable and needs to be

Bug#614785: Found too in oldstable/lenny?

2011-02-24 Thread Alexander Kurtz
Am Donnerstag, den 24.02.2011, 15:57 +0100 schrieb Michael Biebl: But you are right, the security tracker should be updated http://svn.debian.org/wsvn/secure-testing/?rev=16247 Best regards Alexander Kurtz signature.asc Description: This is a digitally signed message part