~ubuntu-branches/ubuntu/lucid/znc/lucid-updates

Viewing all changes in revision 14.

  • Committer: Package Import Robot
  • Author(s): Thomas Ward
  • Date: 2012-12-18 06:29:44 UTC
  • mfrom: (4.2.2 lenny)
  • Revision ID: package-import@ubuntu.com-20121218062944-s417aq3au984e8rn
Tags: 0.078-1ubuntu0.1
* SECURITY UPDATE: denial of service caused by NULL pointer dereference
  (LP: #1090195)
  - debian/patches/cve-2010-2448.patch: modify znc.cpp to prevent NULL
    pointer dereference.  Based on upstream patch.
  - CVE-2010-2448
  - CVE-2010-2488
* SECURITY UPDATE: denial of service caused by PING command without
  arguments (LP: #1090195)
  - debian/patches/cve-2010-2812.patch: modify Client.cpp to correctly
    handle PING commands that have no arguments.  Based on upstream patch.
  - CVE-2010-2812
* SECURITY UPDATE: denial of service via unknown vectors related to
  "unsafe substr() calls" (LP: #1090195)
  - debian/patches/cve-2010-2934.patch: modify IRCSock.cpp,
    modules/adminlog.cpp, modules/away.cpp, and modules/email.cpp to
    remove unsafe substr() calls.  Based on upstream patch.
  - CVE-2010-2934

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: