Comment 5 for bug 57595

Revision history for this message
Kees Cook (kees) wrote :

Thanks for the report!

For a security update, this is a pretty large diff. Looking at the buffer overflow that got fixed[1], I think the situation needed to abuse it aren't realistic.

A new jfsutils will be part of edgy+1, at which time these problems will be fixed.

[1] http://jfs.cvs.sourceforge.net/jfs/jfsutils/libfs/fssubs.c?r1=1.20&r2=1.21