Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 162318
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Paul de Vrieze <pauldv@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Kalin KOZHUHAROV <kalin@ThinRope.net>
Add CC:
CC:
URL:
Summary:
Status Whiteboard:
Keywords:

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 162318 depends on: Show dependency tree
Bug 162318 blocks:
Votes: 0    Show votes for this bug    Vote for this bug

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2007-01-16 04:13 0000
Please see the URL.

Reproducible: Didn't try

Steps to Reproduce:




Patch available here:

http://bugs.debian.org/cgi-bin/bugreport.cgi/neon26_0.26.2-3_to_mdx1.diff?bug=404723;msg=5;att=2

Is this upstream?
Do we need GLSA for that?

------- Comment #1 From Raphael Marichez 2007-01-17 22:46:54 0000 -------
it's a client-side DoS, usually we don't handle client-side DoS since a bad URI
is also a form of disruption of service.

But thanks a lot for the report, Kalin. Reassigning to the maintainer as a
non-security bug.

------- Comment #2 From Raphael Marichez 2007-01-17 22:52:03 0000 -------
And reassiging. Paul is not the real maintainer, but... who else?

There is no upstream fixed release according to http://www.webdav.org/neon/

A proposed patch is provided in the debian bug
http://bugs.debian.org/cgi-bin/bugreport.cgi/neon26_0.26.2-3_to_mdx1.diff?bug=404723;msg=5;att=2

Paul, act as you want :)

------- Comment #3 From Carsten Lohrke 2007-05-14 13:47:48 0000 -------
bumped to 0.26.3 at least

------- Comment #4 From Benedikt Böhm 2007-11-10 19:40:04 0000 -------
fixed in 0.26.4

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug