[Pkg-voip-commits] r5434 - /pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch /pwlib/trunk/debian/patches/CVE-2007-4897.dpatch

paravoid at alioth.debian.org paravoid at alioth.debian.org
Tue Apr 1 08:09:14 UTC 2008


Author: paravoid
Date: Tue Apr  1 08:09:14 2008
New Revision: 5434

URL: http://svn.debian.org/wsvn/pkg-voip/?sc=1&rev=5434
Log:
dpatch-missing-description CVE-2007-4896.dpatch

Modified:
    pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch
    pwlib/trunk/debian/patches/CVE-2007-4897.dpatch

Modified: pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch
URL: http://svn.debian.org/wsvn/pkg-voip/pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch?rev=5434&op=diff
==============================================================================
--- pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch (original)
+++ pwlib-titan/trunk/debian/patches/CVE-2007-4896.dpatch Tue Apr  1 08:09:14 2008
@@ -1,8 +1,9 @@
 #! /bin/sh /usr/share/dpatch/dpatch-run
 ## CVE-2007-4897.dpatch by Nico Golde <nion at debian.org>
 ##
-## All lines beginning with `## DP:' are a description of the patch.
-## DP: No description.
+## DP: Fix remote denial of service vulnerability caused by a call to
+## DP: PString::vsprintf if the used object already
+## DP: contained more than 1000 characters
 
 @DPATCH@
 diff -urNad pwlib-1.10.10~/src/ptlib/common/contain.cxx pwlib-1.10.10/src/ptlib/common/contain.cxx

Modified: pwlib/trunk/debian/patches/CVE-2007-4897.dpatch
URL: http://svn.debian.org/wsvn/pkg-voip/pwlib/trunk/debian/patches/CVE-2007-4897.dpatch?rev=5434&op=diff
==============================================================================
--- pwlib/trunk/debian/patches/CVE-2007-4897.dpatch (original)
+++ pwlib/trunk/debian/patches/CVE-2007-4897.dpatch Tue Apr  1 08:09:14 2008
@@ -1,8 +1,9 @@
 #! /bin/sh /usr/share/dpatch/dpatch-run
 ## CVE-2007-4897.dpatch by Nico Golde <nion at debian.org>
 ##
-## All lines beginning with `## DP:' are a description of the patch.
-## DP: No description.
+## DP: Fix remote denial of service vulnerability caused by a call to
+## DP: PString::vsprintf if the used object already
+## DP: contained more than 1000 characters
 
 @DPATCH@
 diff -urNad pwlib-1.10.10~/src/ptlib/common/contain.cxx pwlib-1.10.10/src/ptlib/common/contain.cxx




More information about the Pkg-voip-commits mailing list