lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Date: Fri, 4 Sep 2015 10:45:05 +0200
From: Laszlo Boszormenyi <gcs@...ian.org>
To: bugtraq@...urityfocus.com
Subject: [SECURITY] [DSA 3352-1] screen security update

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3352-1                   security@...ian.org
https://www.debian.org/security/                 Laszlo Boszormenyi (GCS)
September 04, 2015                    https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : screen
CVE ID         : CVE-2015-6806
Debian Bug     : 797624

A vulnerability was found in screen causing a stack overflow which
results in crashing the screen server process, resulting in denial
of service.

For the oldstable distribution (wheezy), this problem has been fixed
in version 4.1.0~20120320gitdb59704-7+deb7u1.

For the stable distribution (jessie), this problem has been fixed in
version 4.2.1-3+deb8u1.

For the testing (stretch) and unstable (sid) distributions, this problem
has been fixed in version 4.3.1-2.

We recommend that you upgrade your screen packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@...ts.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=52Mr
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ