User: Password:
Subscribe / Log in / New account

OpenPKG alert OpenPKG-SA-2006.005 (tin)

From:  OpenPKG <>
Subject:  [OpenPKG-SA-2006.005] OpenPKG Security Advisory (tin)
Date:  Sun, 19 Feb 2006 13:11:00 +0100

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________________________________________________________ OpenPKG Security Advisory The OpenPKG Project OpenPKG-SA-2006.005 19-Feb-2006 ________________________________________________________________________ Package: tin Vulnerability: buffer overflow OpenPKG Specific: no Affected Releases: Affected Packages: Corrected Packages: OpenPKG CURRENT <= tin-1.8.0-20060113 >= tin-1.8.1-20060216 OpenPKG 2.5 <= tin-1.6.2-2.5.0 >= tin-1.6.2-2.5.1 OpenPKG 2.4 <= tin-1.6.2-2.4.1 >= tin-1.6.2-2.4.2 OpenPKG 2.3 <= tin-1.6.2-2.3.1 >= tin-1.6.2-2.3.2 Description: An allocation off-by-one bug exists in the TIN [1] news reader version 1.8.0 and earlier which can lead to a buffer overflow. ________________________________________________________________________ References: [1] ________________________________________________________________________ For security reasons, this advisory was digitally signed with the OpenPGP public key "OpenPKG <>" (ID 63C4CB9F) of the OpenPKG project which you can retrieve from and hkp:// Follow the instructions on for details on how to verify the integrity of this advisory. ________________________________________________________________________ -----BEGIN PGP SIGNATURE----- Comment: OpenPKG <> iD8DBQFD+GAxgHWT4GPEy58RAmoZAJ92hWIyXxPTqgDW1Q9Bxes8TyfxXACg92EJ 8wpsFu+17HYli7tx59HLOpU= =ebcm -----END PGP SIGNATURE----- ______________________________________________________________________ The OpenPKG Project Project Announcement List

(Log in to post comments)

Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds