[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[DLA 31-1] reportbug security update

Package        : reportbug
Version        : 4.12.6+deb6u1
CVE ID         : CVE-2014-0479

Fix CVE-2014-0479: Arbitrary code execution in compare_versions.
A man-in-the-middle attacker could put shell metacharacters in the
version number, causing execution of code of their choice.

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply to: