Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri, 3 Oct 2014 15:39:07 +0000
From: mancha <mancha1@...o.com>
To: Rainer Gerhards <rgerhards@...adiscon.com>
Cc: Solar Designer <solar@...nwall.com>, oss-security@...ts.openwall.com
Subject: Re: sysklogd vulnerability (CVE-2014-3634)

On Fri, Oct 03, 2014 at 05:16:31PM +0200, Rainer Gerhards wrote:
> Today is Germany's national holiday.  IIRC it was with 3500000000 or
> 350000001. I probably can't check today. I think it was on ubuntu 12.04lts
> fully patched.
> 
> Sorry i have no better answer at the moment.

In that case, Schönen Feiertag.

Maybe when you have some time you can provide a bit more particulars. On
sysklogd, I'm not seeing it. But, the flaw does exist and there is OOB
access so there's no reason not to apply the fix.

--mancha

Content of type "application/pgp-signature" skipped

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.