Re: [pkg-lynx-maint] [Lynx-dev] CVE-2016-9179 (invalid URL parsing with '?')
- To: Thomas Dickey <dickey@his.com>
- Cc: Debian Lynx Packaging Team <pkg-lynx-maint@lists.alioth.debian.org>, Debian Security Team <team@security.debian.org>, Brian May <bam@debian.org>, debian-lts@lists.debian.org, Lynx Development <lynx-dev@nongnu.org>
- Subject: Re: [pkg-lynx-maint] [Lynx-dev] CVE-2016-9179 (invalid URL parsing with '?')
- From: Axel Beckert <abe@debian.org>
- Date: Tue, 15 Nov 2016 13:00:19 +0100
- Message-id: <[🔎] 20161115120019.GV5130@sym.noone.org>
- Mail-followup-to: Thomas Dickey <dickey@his.com>, Debian Lynx Packaging Team <pkg-lynx-maint@lists.alioth.debian.org>, Debian Security Team <team@security.debian.org>, Brian May <bam@debian.org>, debian-lts@lists.debian.org, Lynx Development <lynx-dev@nongnu.org>
- In-reply-to: <[🔎] 20161115100616.GA17665@vmw-debian7-64.jexium-island.net>
- References: <[🔎] 87a8d28rln.fsf@prune.linuxpenguins.xyz> <[🔎] 20161114075334.GA27784@lorien.valinor.li> <[🔎] 20161114125531.GS5130@sym.noone.org> <[🔎] 20161114230521.GB17430@vmw-debian7-64.jexium-island.net> <[🔎] 874m39jjuw.fsf@prune.linuxpenguins.xyz> <[🔎] 20161115090720.GA7604@vmw-debian7-64.jexium-island.net> <[🔎] 20161115100616.GA17665@vmw-debian7-64.jexium-island.net>
Hi Thomas,
Thomas Dickey wrote:
> > > Then it takes me to http://www.debian.org/
> >
> > yes - and I was using the trace to see if I'd gotten the right host.
> > The trace is (based on strace...) incorrect. I'll fix that.
Ah, I see.
> Here's the change which I just applied, which seems to work.
Thanks, will check!
> If there's no further changes needed, I'll release that as dev.11
Appreciated.
> A pointer to a web archive of this discussion would be useful.
The discussion started at
https://lists.debian.org/debian-lts/2016/11/threads.html#00072
Regards, Axel
--
,''`. | Axel Beckert <abe@debian.org>, http://people.debian.org/~abe/
: :' : | Debian Developer, ftp.ch.debian.org Admin
`. `' | 4096R: 2517 B724 C5F6 CA99 5329 6E61 2FF9 CD59 6126 16B5
`- | 1024D: F067 EA27 26B9 C3FC 1486 202E C09E 1D89 9593 0EDE
Reply to: