Summary: | <sys-power/acpid-1.0.10 DoS (CVE-2009-0798) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Alex Legler (RETIRED) <a3li> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | loki_val, mobile+disabled |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=494443 | ||
Whiteboard: | B3 [glsa] | ||
Package list: | Runtime testing required: | --- |
Description
Alex Legler (RETIRED)
![]() ![]() ![]() +*acpid-1.0.10 (03 May 2009) + + 03 May 2009; Peter Alfredsen <loki_val@gentoo.org> +acpid-1.0.10.ebuild: + Bump, bug 246802. Thanks to Davide Pesavento <davidepesa@gmail.com>. Use + Ted Felix version of acpid that correctly handles using the netlink + interface instead of the deprecated /proc/acpi/event interface. Also fixes + bug 268079, CVE-2009-0798. + 1.0.10_p3 is in the tree with a patch from bug 268442 for strict aliasing warnings that was accepted upstream. (In reply to comment #2) > 1.0.10_p3 is in the tree with a patch from bug 268442 for strict aliasing > warnings that was accepted upstream. Does this have to do with the security issue? Do you want _p3 to go stable or 1.0.10? Okay, _p3 was confirmed on IRC. Arches, please test and mark stable: =sys-power/acpid-1.0.10_p3 Target keywords : "amd64 ia64 x86" amd64/x86 stable ia64 stable Ready for vote, I vote YES. Yes, too, request filed. GLSA 200905-06 |