Bug#479036: CVE-2008-1996: DoS due to too many connections

2008-05-02 Thread Steffen Joeris
Package: licq Severity: normal Hi The following CVE(0) has been issued against licq. CVE-2008-1996: licq before 1.3.6 allows remote attackers to cause a denial of service (file-descriptor exhaustion and application crash) via a large number of connections. A proposed patch can be found here(1

Bug#453278: CVE-2007-6110: XSS in htsearch

2007-11-28 Thread Steffen Joeris
Package: htdig Version: 1:3.2.0b6-3.1 Severity: important Tags: security Hi The following CVE[0] has been issued against htdig. CVE-2007-6110: Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parame

Bug#383161: please verify again?

2006-08-15 Thread Steffen Joeris
Hi Can you please check that again, because according to the build-log[0] everything went fine and I could also build the package in my pbuilder without problems. For now I'll just lower the severity of that bugreport to important, but I don't see a FTBFS so far. Cheers and thanks in advance S