Arch Linux

Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines

Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.

REPEAT: Do NOT report bugs for outdated packages!
Tasklist

FS#28897 - [iputils] Integer overflow in iputils ping/ping6 tools

Attached to Project: Arch Linux
Opened by Peter Kotvan (tlamer) - Tuesday, 13 March 2012, 18:56 GMT
Last edited by Stéphane Gaudreault (stephane) - Thursday, 12 July 2012, 10:24 GMT
Task Type Bug Report
Category Packages: Core
Status Closed
Assigned To Stéphane Gaudreault (stephane)
Architecture All
Severity Critical
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description:

Hi, twitter told me about this vulnerability in ping and ping6 tools. Here's link on the post i read, theres a patch to fix this thing.

http://seclists.org/fulldisclosure/2012/Mar/117

package version: acb460417983bfb7e26b
This task depends upon

Closed by  Stéphane Gaudreault (stephane)
Thursday, 12 July 2012, 10:24 GMT
Reason for closing:  Fixed
Comment by Peter Kotvan (tlamer) - Tuesday, 13 March 2012, 19:15 GMT
Ow.. sorry for bad package version, it was bad clipboard buffer this is the right version: 20101006
Comment by Stéphane Gaudreault (stephane) - Tuesday, 12 June 2012, 13:09 GMT
It seems that upstream and all major distro don't care about this. I am going to close this report.
Comment by Stéphane Gaudreault (stephane) - Thursday, 12 July 2012, 00:49 GMT
Fedora included this patch a few weeks ago. I a going to patch our pkg too.

Loading...