Comment 12 for bug 1083414

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package pgbouncer - 1.3.1-3ubuntu0.1

---------------
pgbouncer (1.3.1-3ubuntu0.1) lucid-security; urgency=low

  * SECURITY UPDATE: denial of service when too long db name is provided
    (LP: #1083414)
    - debian/patches/04-CVE-2012-4575.dpatch: objects.c(add_database): fail
      gracefully if too long db name. Based on upstream patch.
    - CVE-2012-4575
 -- Christian Kuersteiner <email address hidden> Fri, 07 Dec 2012 13:06:35 +0700