Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
FS#28897 - [iputils] Integer overflow in iputils ping/ping6 tools
Attached to Project:
Arch Linux
Opened by Peter Kotvan (tlamer) - Tuesday, 13 March 2012, 18:56 GMT
Last edited by Stéphane Gaudreault (stephane) - Thursday, 12 July 2012, 10:24 GMT
Opened by Peter Kotvan (tlamer) - Tuesday, 13 March 2012, 18:56 GMT
Last edited by Stéphane Gaudreault (stephane) - Thursday, 12 July 2012, 10:24 GMT
|
DetailsDescription:
Hi, twitter told me about this vulnerability in ping and ping6 tools. Here's link on the post i read, theres a patch to fix this thing. http://seclists.org/fulldisclosure/2012/Mar/117 package version: acb460417983bfb7e26b |
This task depends upon
Closed by Stéphane Gaudreault (stephane)
Thursday, 12 July 2012, 10:24 GMT
Reason for closing: Fixed
Thursday, 12 July 2012, 10:24 GMT
Reason for closing: Fixed
Comment by Peter Kotvan (tlamer) -
Tuesday, 13 March 2012, 19:15 GMT
Ow.. sorry for bad package version, it was bad clipboard buffer this is the right version: 20101006
Comment by Stéphane Gaudreault (stephane) -
Tuesday, 12 June 2012, 13:09 GMT
It seems that upstream and all major distro don't care about this. I am going to close this report.
Comment by Stéphane Gaudreault (stephane) -
Thursday, 12 July 2012, 00:49 GMT
Fedora included this patch a few weeks ago. I a going to patch our pkg too.