Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Date: Wed, 25 Feb 2009 21:14:36 +0100
From: Alex Legler <a3li@...too.org>
To: oss-security@...ts.openwall.com
Subject: CVE request: Psi <0.12.1 DoS

Hey,

I think there is no CVE for this issue yet, so please assign one.

From the Changelog:
  New in 0.12.1
  - Bugfix for DOS vulnerability in the file transfer code.
    Thanks to Jesus Olmos (jolmos@...cauditors.com)

References:
https://bugs.gentoo.org/show_bug.cgi?id=252830
http://jolmos.blogspot.com/2008/12/psi-remote-integer-overflow.html
http://www.securityfocus.com/archive/1/499563
http://secunia.com/advisories/33311/
http://milw0rm.com/exploits/7555

Kind regards,
Alex

Download attachment "signature.asc" of type "application/pgp-signature" (198 bytes)

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.