mixmaster 3.0b2-5ubuntu1 source package in Ubuntu

Changelog

mixmaster (3.0b2-5ubuntu1) gutsy; urgency=low

  * Merge from Debian unstable. Remaining Ubuntu changes:
    - Added patch to use lsb functions in init file by David Mandelberg

mixmaster (3.0b2-5) unstable; urgency=high

  * Backport a fix from upstream:
    In two functions in keymgt.c we had allocated a buffer of 33 bytes
    when if fact we were using one more - 34 - bytes.  This buffer
    overflow is exposed when building with gcc 4.x, it never was exposed
    with previous compilers because they apparently layed out the stack
    differently.
    The result of this buffer overflow is that a single 0-byte will be
    written at the end of the buffer.  At that position on the stack
    there is (at least in the previous build) a saved local variable
    from a calling function.  This local variable is a pointer to a
    BUFFER struct and this pointer has its least significant byte
    set to zero.
    This prevents mixmaster from properly decrypting incoming type2
    messages.  It's not likely that this can be exploited to execute
    arbitrary code, tho evidence or argument to the contrary are of course
    welcome.
    Upstream patch:
    http://svn.noreply.org/cgi-bin/viewcvs.cgi/trunk/Mix/Src/keymgt.c?rev=929&r1=766&r2=929
    Closes: #418662
    Thanks to Hauke Lampe and Colin Tuckley.

 -- Stephan Hermann <email address hidden>   Sun,  6 May 2007 16:27:55 +0200

Upload details

Uploaded by:
Stephan RĂ¼gamer
Uploaded to:
Gutsy
Original maintainer:
MOTU
Architectures:
any
Section:
mail
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mixmaster_3.0b2.orig.tar.gz 277.2 KiB ae7a8158d7e3ce03ffc3b5c3018debe0259a6ebcc5416d471e7d154a22d9b06b
mixmaster_3.0b2-5ubuntu1.diff.gz 35.7 KiB b0db1ca3905d56f1ac88749cabb9b257c55fc7c43d5b433dcdb77cf59d8f7c6c
mixmaster_3.0b2-5ubuntu1.dsc 736 bytes 1d14c1083b90a756bda922e5b40d3c5ba4695536834d349195d06d7e4379463b

View changes file

Binary packages built by this source

mixmaster: No summary available for mixmaster in ubuntu hardy.

No description available for mixmaster in ubuntu hardy.