Bug#697580: connman: CVE-2012-6459

2013-01-11 Thread John Paul Adrian Glaubitz
Ping, any news regarding this RC bug? If no one volunteers, I'd be happy to make an NMU. As for the testing of this bug, I cannot readily verify the fix since the test utility for Connman - "test-connman" - is not part of Debian. However, since the patch was provided by upstream, I assume that th

Bug#697580: connman: CVE-2012-6459

2013-01-09 Thread John Paul Adrian Glaubitz
Package: connman Followup-For: Bug #697580 tags 697580 patch thanks Hi, I have created an NMU which includes the upstream patch to fix the vulnerabilty CVE-2012-6459. I am attaching the debdiff towards the NMU version as well as the extracted upstream patch. I haven't tested the patch yet. Che

Bug#697580: connman: CVE-2012-6459

2013-01-06 Thread Moritz Muehlenhoff
Package: connman Severity: grave Tags: security Please check, whether the version/configuration in Debian is affected: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6459 https://bugs.tizen.org/jira/browse/TIVI-211 http://git.kernel.org/?p=network/connman/connman.git;a=commit;h=01126286f9