Summary: | <net-analyzer/dnstracer-1.9-r2 : Stack-buffer overflow via a long name argument in command line | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | netmon |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=1458794 | ||
Whiteboard: | B2 [noglsa cve] | ||
Package list: |
=net-analyzer/dnstracer-1.9-r2
|
Runtime testing required: | No |
Description
Agostino Sarubbo
2017-06-05 15:11:15 UTC
@arches, please stabilize. amd64 stable x86 stable commit 949f332373007d13d147ceaa10863926f5e21a86 Author: Jeroen Roovers <jer@gentoo.org> Date: Sat Feb 10 10:53:42 2018 +0100 net-analyzer/dnstracer: Stable for HPPA too. ia64 stable ppc64 stable arm stable, all arches done. CVE calls out a DoS. No PoC for ACE/RCE found. Downgraded. GLSA Vote: No The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=85f923455730d39bb7722b54b58a606cc8d2acd7 commit 85f923455730d39bb7722b54b58a606cc8d2acd7 Author: Aaron Bauman <bman@gentoo.org> AuthorDate: 2018-04-08 13:29:18 +0000 Commit: Aaron Bauman <bman@gentoo.org> CommitDate: 2018-04-08 13:30:21 +0000 net-analyzer/dnstracer: drop vulnerable Bug: https://bugs.gentoo.org/620928 Package-Manager: Portage-2.3.28, Repoman-2.3.9 net-analyzer/dnstracer/dnstracer-1.9-r1.ebuild | 19 ------------------- 1 file changed, 19 deletions(-)} |