~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
Candidate: CVE-2015-0838
PublicDate: 2015-03-31
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0838
Description:
 Buffer overflow in the C implementation of the apply_delta function in
 _pack.c in Dulwich before 0.9.9 allows remote attackers to execute
 arbitrary code via a crafted pack file.
Ubuntu-Description:
Notes:
Bugs:
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=780958
Priority: medium
Discovered-by:
Assigned-to:

Patches_dulwich:
 upstream: https://git.samba.org/?p=jelmer/dulwich.git;a=commit;h=b25e8390074060ea2aed25cf070b8e98b85a3875
upstream_dulwich: released (0.9.9)
lucid_dulwich: ignored (reached end-of-life)
precise_dulwich: released (0.8.5-2+deb7u2build0.12.04.1)
precise/esm_dulwich: DNE (precise was released [0.8.5-2+deb7u2build0.12.04.1])
trusty_dulwich: needs-triage
utopic_dulwich: ignored (reached end-of-life)
vivid_dulwich: ignored (reached end-of-life)
vivid/stable-phone-overlay_dulwich: DNE
vivid/ubuntu-core_dulwich: DNE
wily_dulwich: not-affected (0.10.1-1)
xenial_dulwich: not-affected (0.10.1-1)
yakkety_dulwich: not-affected (0.10.1-1)
zesty_dulwich: not-affected (0.10.1-1)
devel_dulwich: not-affected (0.10.1-1)