Bug#870186: [Pkg-sass-devel] Bug#870186: libsass: CVE-2017-11608

2019-03-11 Thread Salvatore Bonaccorso
Control: fixed -1 3.4.6-1 Hi, On Mon, Mar 11, 2019 at 01:49:36PM +0100, Jonas Smedegaard wrote: > Quoting Jonas Smedegaard (2019-03-11 13:43:41) > > POC on Debian stretch with libsass1 3.4.3-1 and sassc 3.4.2-1: > > > > Error: Invalid UTF-8 sequence > > on line 1 of

Bug#870186: [Pkg-sass-devel] Bug#870186: libsass: CVE-2017-11608

2019-03-11 Thread Jonas Smedegaard
Quoting Jonas Smedegaard (2019-03-11 13:43:41) > POC on Debian stretch with libsass1 3.4.3-1 and sassc 3.4.2-1: > > Error: Invalid UTF-8 sequence > on line 1 of /attachment.cgi?id=1303540 > >> "�d\ >-^ Correction: Aboce was with libsass1 3.5.5-2 and sassc 3.5.0-1. - Jonas -- *