Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Justin Pryzby wrote: > Bug#278191: CAN-2005-0079: authentication bypass via integer overflow > > > Its not an integer overflow, btw, though its not really a buffer > overflow either; its an set-an-arbitrary-by

Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Justin Pryzby
Bug#278191: CAN-2005-0079: authentication bypass via integer overflow Its not an integer overflow, btw, though its not really a buffer overflow either; its an set-an-arbitrary-byte-of-memory-to-zero bug. Justin On Mon, Jan 17

Bug#278190: Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Justin Pryzby wrote: > reopen 278191 > tag 278191 woody > thanks > > Correct? In generall yes and only if the security team is contacted in parallel, but please close them as I surely forget this. Regards, Joey -- MIME - broken solution for a broken design. -- Ralf Baechle Please al

Bug#278190: Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Justin Pryzby
reopen 278191 tag 278191 woody thanks Correct? On Mon, Jan 17, 2005 at 06:39:34PM +0100, Martin Schulze wrote: > Just for references, this issue has been assigned CAN-2005-0079. > A Debian advisory will follow. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trou

Processed: Re: Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > reopen 278191 Bug#278191: xtrlock unlocks upon very long input Bug#278190: xtrlock unlocks upon very long input Bug reopened, originator not changed. > tag 278191 woody Bug#278191: xtrlock unlocks upon very long input Tags were: patch confirmed securit

Bug#278191: CAN-2005-0079: authentication bypass via integer overflow

2005-01-17 Thread Martin Schulze
Just for references, this issue has been assigned CAN-2005-0079. A Debian advisory will follow. Regards, Joey -- MIME - broken solution for a broken design. -- Ralf Baechle Please always Cc to me when replying to me on the lists. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a