Bug#304174: exim4: Patch for 296492 introduced remotely exploitable infinite loop (DOS)

2005-04-11 Thread Andreas Metzler
tags 304174 pending # fixed in SVN thanks On 2005-04-11 Marc Sherman <[EMAIL PROTECTED]> wrote: > Package: exim4 > Version: 4.50-5 [...] > The patch for 296492, which is currently in sid's 4.50-5, introduced an > infinite loop which could be triggered by a remote site with > (intentionally?) miscon

Processed: Re: Bug#304174: exim4: Patch for 296492 introduced remotely exploitable infinite loop (DOS)

2005-04-11 Thread Debian Bug Tracking System
Processing commands for [EMAIL PROTECTED]: > tags 304174 pending Bug#304174: exim4: Patch for 296492 introduced remotely exploitable infinite loop (DOS) Tags were: patch security sid Tags added: pending > # fixed in SVN > thanks Stopping processing here. Please contact me if

Bug#304174: exim4: Patch for 296492 introduced remotely exploitable infinite loop (DOS)

2005-04-11 Thread Marc Sherman
Package: exim4 Version: 4.50-5 Severity: grave Tags: security sid patch Justification: remote exploitable DOS The patch for 296492, which is currently in sid's 4.50-5, introduced an infinite loop which could be triggered by a remote site with (intentionally?) misconfigured DNS. It is discussed in