[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Release-critical Bugreport for August 10, 2001



BugScan reporter <bugscan@debian.org> writes:
*snip*

> Package: kerberos4kth (non-US/main)
> Maintainer: Greg Stark <gsstark@mit.edu>
>   79288  bugtraq posting on kerberos4kth--environment variables and buffer overflow
>   89808  kerberos4kth is not installable

I think that kerberos4kth is replaced with kerberos4kth1. Bug 79288 is
fixed in kthkrb 1.0.4 if I remember it right. So it should first be moved
to the kerberos4kth1 package and then closed. Maybe the same with 89808. 

But the current version of kerberos4kth (1.0.6) have a buffer overflow in
the telnet code, wish is fixed in 1.0.9. Se bug 108533. 
(Sorry, I forgot the version tag in 108533).

Sincerely 
Mikael




Reply to: