FFe needed for crucial security issue

Bug #289182 reported by Harald Sitter
2
Affects Status Importance Assigned to Milestone
quassel (Ubuntu)
Fix Released
High
Harald Sitter

Bug Description

Binary package hint: quassel

Upstream fix: http://git.quassel-irc.org/?p=quassel.git;a=commit;h=b0a1b40f41bcba8bca231235c40c9c6d9ead2432

Implementing ctcp level quoting and ctcp low level quoting. This fixes a crucial security issue.
 src/core/ctcphandler.cpp | 30 ++++++++++++++++++++++++------
 src/core/ctcphandler.h | 4 +++-
 2 files changed, 27 insertions(+), 7 deletions(-)

Related branches

Changed in quassel:
assignee: nobody → apachelogger
importance: Undecided → High
milestone: none → ubuntu-8.10
status: New → In Progress
Revision history for this message
Harald Sitter (apachelogger) wrote :

<ScottK> apachelogger: File a bug and close it debian/changelog. As long as you test it first, you've got my motu-release ack to upload (paste this in the bug when you write it).

Tested, works properly.

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package quassel - 0.3.0-0ubuntu8

---------------
quassel (0.3.0-0ubuntu8) intrepid; urgency=low

  * Added patch from upstream:
    + quassel_16_ctcp_level_and_low_level_quoting.patch
      Implementing ctcp level quoting and ctcp low level quoting.
      This fixes a crucial security issue. (LP: #289182)

 -- Harald Sitter <email address hidden> Sat, 25 Oct 2008 18:30:49 +0200

Changed in quassel:
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.