Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-21 Thread Salvatore Bonaccorso
Hi Noah! On Wed, May 20, 2015 at 10:21:06PM -0700, Noah Meyerhans wrote: > On Thu, May 21, 2015 at 06:44:04AM +0200, Salvatore Bonaccorso wrote: > > > Yes indeed we were planning to do so. Have both prepared and were > > > waiting for the CVE assignment. But if none is done we might proceed. > > >

Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-20 Thread Noah Meyerhans
On Thu, May 21, 2015 at 06:44:04AM +0200, Salvatore Bonaccorso wrote: > > Yes indeed we were planning to do so. Have both prepared and were > > waiting for the CVE assignment. But if none is done we might proceed. > > I can upload amd64 binary packages for testing exposure to people.d.o. > > https

Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-20 Thread Salvatore Bonaccorso
Hi Noah, On Thu, May 21, 2015 at 05:53:12AM +0200, Salvatore Bonaccorso wrote: > Hi Noah, > > On Wed, May 20, 2015 at 10:52:14AM -0700, Noah Meyerhans wrote: > > On Wed, May 20, 2015 at 08:09:01AM +0200, Salvatore Bonaccorso wrote: > > > Marked as severity grave as this could lead to denial of se

Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-20 Thread Salvatore Bonaccorso
Hi Noah, On Wed, May 20, 2015 at 10:52:14AM -0700, Noah Meyerhans wrote: > On Wed, May 20, 2015 at 08:09:01AM +0200, Salvatore Bonaccorso wrote: > > Marked as severity grave as this could lead to denial of service, see > > the following for details: > > > > http://www.openwall.com/lists/oss-secur

Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-20 Thread Noah Meyerhans
On Wed, May 20, 2015 at 08:09:01AM +0200, Salvatore Bonaccorso wrote: > Marked as severity grave as this could lead to denial of service, see > the following for details: > > http://www.openwall.com/lists/oss-security/2015/05/20/1 > > No CVE is assigned yet (will update the bug once assigned). I

Bug#785778: ipsec-tools: null pointer dereference crash in racoon

2015-05-19 Thread Salvatore Bonaccorso
Source: ipsec-tools Version: 1:0.8.0-14 Severity: grave Tags: security upstream Hi Marked as severity grave as this could lead to denial of service, see the following for details: http://www.openwall.com/lists/oss-security/2015/05/20/1 No CVE is assigned yet (will update the bug once assigned).