Bug#986215: scrollz: CVE-2021-29376

2021-04-28 Thread Tobias Frost
Source: scrollz Followup-For: Bug #986215 Control: tags -1 patch Fixed upstream with commit: https://github.com/ScrollZ/ScrollZ/pull/26/commits/1155969d24e063b6d0b7e08b9b0c4ea8623f92ce

Bug#986215: scrollz: CVE-2021-29376

2021-04-25 Thread Tobias Frost
Source: scrollz Followup-For: Bug #986215 (As scrollz seems to be dead upstream / unmaintained, I'm not going to fix this, as the risk is quite big to break stuff, but I want to document my triaging) Looking at the diff for the ircii version 20210314 that fixes this CVE, (ircii bug is #986214),