please sync 2.0.6-1 (universe) from Debian unstable (main)

Bug #178134 reported by Lionel Porcheron
4
Affects Status Importance Assigned to Milestone
syslog-ng (Ubuntu)
Fix Released
Medium
Martin Pitt

Bug Description

Binary package hint: syslog-ng

please sync 2.0.6-1 (universe) from Debian unstable (main).

This new upstream release fix security issue.

Changelog:
 syslog-ng (2.0.6-1) unstable; urgency=high
 .
   * New upstream version.
   * This release addresses the following security issue:
     - A remote attacker can cause a denial of service (crash)
       via a crafted log message that is missing a whitespace
       at the end of the timestamp (CVE-2007-6437; Closes: #457334)

Changed in syslog-ng:
importance: Undecided → Medium
status: New → Confirmed
Revision history for this message
Martin Pitt (pitti) wrote :

synced

Changed in syslog-ng:
assignee: nobody → pitti
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.