www: f927332d: Credit TippingPoint's Zero Day Initiativ...
rlaager at pidgin.im
rlaager at pidgin.im
Mon Jun 8 17:25:31 EDT 2009
-----------------------------------------------------------------
Revision: f927332d4bcc727c09afc628c51ceca4dd7d7dfd
Ancestor: 5a51e3f14cb77c78033727617637458029e90fa7
Author: rlaager at pidgin.im
Date: 2009-06-08T21:23:00
Branch: im.pidgin.www
URL: http://d.pidgin.im/viewmtn/revision/info/f927332d4bcc727c09afc628c51ceca4dd7d7dfd
Modified files:
htdocs/news/security/index.php
ChangeLog:
Credit TippingPoint's Zero Day Initiative for CVE-2009-1376
-------------- next part --------------
============================================================
--- htdocs/news/security/index.php 8ca6374af758d1fef0f1e2ef28835ead19a3ba8a
+++ htdocs/news/security/index.php 702e970db94bc98fe8fff63e7a4b6c4861f1bd7a
@@ -346,7 +346,7 @@ $vulnerabilities = array(
"description" => "The previous fix to <a href=\"/news/security/?id=25\">CVE-2008-2927</a> was deemed incomplete. The size check improperly cast an uint64 to size_t which can cause an integer overflow, rendering the check useless.",
"fix" => "The proper variable type is now used when doing size comparison. Additionally, the malformed message is now properly discarded.",
"fixedversion" => "2.5.6",
- "discoveredby" => ""
+ "discoveredby" => "Anonymous (via TippingPoint's Zero Day Initiative)"
)
);
/* Template for the unfortunate future
More information about the Commits
mailing list