[collectd-changes] pkg-collectd: branch "wheezy" created. collectd-5.1.0-3-2-g274d9af

Sebastian Harl sh at tokkee.org
Wed Jul 27 11:07:53 CEST 2016


The branch "wheezy" of project "collectd Debian package"
has been created
        at  274d9afa3258e3e5914f59258330ddad3405b5f0 (commit)

- Log -----------------------------------------------------------------
commit 274d9afa3258e3e5914f59258330ddad3405b5f0
Author: Sebastian Harl <sh at tokkee.org>
Date:   Wed Jul 27 10:35:39 2016 +0200

    patches/bts832577-gcry-control.dpatch: Fix improper usage of gcry_control.
    
    A team of security researchers at Columbia University and the University of
    Virginia discovered that GCrypt's gcry_control is sometimes called without
    checking its return value for an error. This may cause the program to be
    initialized without the desired, secure settings.
    
    Closes: #832577

commit ac4e97fc52177387a48f70c63fc834f841fb1027
Author: Sebastian Harl <sh at tokkee.org>
Date:   Wed Jul 27 10:20:37 2016 +0200

    patches/CVE-2016-6254.dpatch: Fix heap overflow in the network plugin.
    
    Emilien Gaspar has identified a heap overflow in parse_packet(), the function
    used by the network plugin to parse incoming network packets.
    
    Thanks to Florian Forster for reporting the bug in Debian.
    Closes: #832507, CVE-2016-6254

-----------------------------------------------------------------------




More information about the collectd-changes mailing list