[pkg-fgfs-crew] Bug#669025: CVE-2012-2090 / CVE-2012-2091

Moritz Muehlenhoff jmm at inutil.org
Wed Nov 7 17:36:14 UTC 2012


On Sat, Nov 03, 2012 at 02:54:01PM -0400, Michael Gilbert wrote:
> control: severity -1 serious
> 
> Marking this as serious since it is somewhat common for users to
> download untrusted models, which could contain this malicious data.

Patches from Tom Callaway are attached.

Cheers,
        Moritz
-------------- next part --------------
A non-text attachment was scrubbed...
Name: flightgear-2.6.0-check-for-%n-in-printf-format-string.patch
Type: text/x-diff
Size: 2524 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-fgfs-crew/attachments/20121107/b0600a93/attachment-0002.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: flightgear-2.6.0-use-snprintf-for-rotor-strings.patch
Type: text/x-diff
Size: 4141 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-fgfs-crew/attachments/20121107/b0600a93/attachment-0003.patch>


More information about the pkg-fgfs-crew mailing list