Bug#453283: CVE-2007-6103: remote DoS

2007-11-28 Thread Moritz Muehlenhoff
Steffen Joeris wrote: > CVE-2007-6103: > > I Hear U (IHU) 0.5.6 and earlier allows remote attackers to cause (1) a > denial of service (infinite loop) via a packet that contains zero in the > size field in its header, which is improperly handled by the > Receiver::processPacket function; and (2)

Bug#453283: CVE-2007-6061: possible symlink attack

2007-11-28 Thread Steffen Joeris
Package: audacity Severity: grave Tags: security Justification: user security hole Hi The following CVE[0] has been issued against audacity. CVE-2007-6061: Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allo