Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 230075
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Robert Buchholz <rbu@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 230075 depends on: Show dependency tree
Bug 230075 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2008-06-29 18:01 0000
Secunia:

Description:
A weakness has been reported in DC++, which can be exploited by malicious
people to cause a DoS (Denial of Service).

The weakness is caused due to a NULL pointer dereference error when handling
partial file list requests and can be exploited to cause the application to
crash.

The weakness is reported in versions prior to 0.707 (Unstable).

Solution:
The vendor has released version 0.707 (Unstable).

Provided and/or discovered by:
The vendor credits crise.

Original Advisory:
http://sourceforge.net/project/shownotes.php?release_id=608612&group_id=40287

------- Comment #1 From Robert Buchholz 2008-06-29 18:10:05 0000 -------
Steven Sheehy of linuxdcpp writes:
It does affect linuxdcpp. I have just committed a fix to cvs for this issue. We 
are hoping to release a new version sometime next month.

http://cvs.berlios.de/cgi-bin/viewcvs.cgi/linuxdcpp/linuxdcpp/client/ShareManager.cpp.diff?r1=1.14&r2=1.15&sortby=date

------- Comment #2 From Santiago M. Mola 2008-06-29 18:46:57 0000 -------
Upstream fix applied in net-p2p/linuxdcpp-1.0.1-r1.

------- Comment #3 From Robert Buchholz 2008-06-29 22:15:47 0000 -------
Sorry for not noting earlier, there is another remote DoS:
http://cvs.berlios.de/cgi-bin/viewcvs.cgi/linuxdcpp/linuxdcpp/client/NmdcHub.cpp.diff?r1=1.14&r2=1.15&sortby=date

------- Comment #4 From Santiago M. Mola 2008-06-29 22:51:56 0000 -------
Arf, sorry, I actually noted it and for some reason missed its inclusion. Now
included in 1.0.1-r2. I hope there's no third because I'll go to bed soon ;-)

------- Comment #5 From Robert Buchholz 2008-06-29 23:18:12 0000 -------
Arches, please test and mark stable:
=net-p2p/linuxdcpp-1.0.1-r2
Target keywords : "amd64 x86"

------- Comment #6 From Christian Faulhammer 2008-06-30 07:52:11 0000 -------
x86 stable

------- Comment #7 From Santiago M. Mola 2008-07-03 12:01:44 0000 -------
amd64 stable, vulnerable version removed from the tree.

------- Comment #8 From Pierre-Yves Rofes 2008-07-06 18:21:40 0000 -------
glsa vote... client DoS, I vote NO.

------- Comment #9 From Robert Buchholz 2008-07-06 21:48:57 0000 -------
NO, closing.

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug