Bug#996586: heimdal: CVE-2021-3671

2021-11-16 Thread Brian May
Brian May writes: > * Patch breaks compilation on latest Heimdal release: https://github.com/heimdal/heimdal/issues/849 Upstream solution is use the git version :-( -- Brian May

Bug#996586: heimdal: CVE-2021-3671

2021-10-20 Thread Salvatore Bonaccorso
Hi Brian, Only commenting on the first part for now: On Thu, Oct 21, 2021 at 11:19:50AM +1100, Brian May wrote: > Salvatore Bonaccorso writes: > > > Source: heimdal > > Version: 7.7.0+dfsg-2 > > Severity: grave > > Tags: security upstream > > Justification: user security hole > > X-Debbugs-Cc:

Bug#996586: heimdal: CVE-2021-3671

2021-10-20 Thread Brian May
Salvatore Bonaccorso writes: > Source: heimdal > Version: 7.7.0+dfsg-2 > Severity: grave > Tags: security upstream > Justification: user security hole > X-Debbugs-Cc: car...@debian.org, Debian Security Team > > Control: found -1 7.5.0+dfsg-3 Does this need to be grave? Considering it was

Bug#996586: heimdal: CVE-2021-3671

2021-10-15 Thread Salvatore Bonaccorso
Source: heimdal Version: 7.7.0+dfsg-2 Severity: grave Tags: security upstream Justification: user security hole X-Debbugs-Cc: car...@debian.org, Debian Security Team Control: found -1 7.5.0+dfsg-3 Hi, The following vulnerability was published for heimdal. CVE-2021-3671[0]: | A null pointer