Re: Bug#994405: libgmp10:i386: buffer overflow due to integer overflow in mpz/inp_raw.c on 32-bit machines
- To: Anton Gladky <gladk@debian.org>, 994405@bugs.debian.org
- Cc: Vincent Lefevre <vincent@vinc17.net>, debian-lts@lists.debian.org
- Subject: Re: Bug#994405: libgmp10:i386: buffer overflow due to integer overflow in mpz/inp_raw.c on 32-bit machines
- From: Adrian Bunk <bunk@debian.org>
- Date: Sat, 13 Nov 2021 22:09:04 +0200
- Message-id: <[🔎] 20211113200904.GA28983@localhost>
- In-reply-to: <CALF6qJ=g__sVaieaGMuszLtP0HZ-+w2frZOOG8=D_-6R2oFYpA@mail.gmail.com>
- References: <20210915154800.GA1676825@cventin.lip.ens-lyon.fr> <CALF6qJ=Ttsc0M1VBcq9Q95VL_Gt8qFhfrfPTkeZMHfiF6q2=jg@mail.gmail.com> <20210916231710.GC231933@zira.vinc17.org> <20210915154800.GA1676825@cventin.lip.ens-lyon.fr> <CALF6qJ=g__sVaieaGMuszLtP0HZ-+w2frZOOG8=D_-6R2oFYpA@mail.gmail.com>
On Fri, Sep 17, 2021 at 07:02:48AM +0200, Anton Gladky wrote:
> Thanks, Vincent, for the information. I would still wait for CVE,
> so we can apply a patch and track vulnerability for other
> Debian versions (stable/oldstable/o-o-stable etc.).
Hi Anton,
did you manage to get a CVE assigned for this issue, or has there been
any problem with tnat?
> Regards
>
> Anton
Thanks
Adrian
Reply to: