Bug#977782: fixed in postsrsd 1.5-2+deb10u1
Control: reopen -1
Control: tags -1 + pending
On Sun, 2021-01-31 at 19:02 +0000, Debian FTP Masters wrote:
> postsrsd (1.5-2+deb10u1) buster; urgency=medium
> .
> * CVE-2020-35573: Ensure timestamp tags aren't too long before
> trying to
> decode them, to protect against a potential denial-of-service
> attack
> (backported from upstream commit 4733fb1, Closes: #977782).
>
Please don't close release.d.o bugs in your uploads. We (the Release
Team) will do so once the fix is actually in stable.
Regards,
Adam
Reply to: