Gentoo Archives: gentoo-security

From: Agostino Sarubbo <ago@g.o>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] CVE-2012-3547 vulnerability in net-dialup/freeradius
Date: Tue, 11 Sep 2012 19:23:03
Message-Id: 1567763.A67pTbQOvU@devil
In Reply to: [gentoo-security] CVE-2012-3547 vulnerability in net-dialup/freeradius by "Štefan Sakalík"
1 On Tuesday 11 September 2012 16:56:09 Štefan Sakalík wrote:
2 > Hi,
3 > we are affected by this vulnerability so I have created a patch for
4 > freeradius-2.1.11-r1 (in attachment) inspired by upstream patch in git
5 > at git://git.freeradius.org/freeradius-server.git , commit 684dce7da5fd078.
6 > Please review this patch and include it in gentoo since it's a rather
7 > severe vulnerability.
8 Please use our bugzilla for this stuff. File a new bug and proceed with your
9 request.
10
11 Anyway, I see, from this advisory[1], that is enough bump the latest version.
12
13 [1]: https://secunia.com/advisories/50484/
14 --
15 Agostino Sarubbo / ago -at- gentoo.org
16 Gentoo/AMD64 Arch Security Liaison
17 GPG: 0x7CD2DC5D

Attachments

File name MIME type
signature.asc application/pgp-signature