[Pkg-freeipa-devel] Bug#781346: slapi-nis: CVE-2015-0283: infinite loop in getgrnam_r() and getgrgid_r()

Salvatore Bonaccorso carnil at debian.org
Fri Mar 27 19:03:34 UTC 2015


Source: slapi-nis
Version: 0.54-1
Severity: grave
Tags: security upstream fixed-upstream

Hi Timo,

the following vulnerability was published for slapi-nis. I was not
able to verify the issue itself but only checked patch-wise.

CVE-2015-0283[0]:
infinite loop in getgrnam_r() and getgrgid_r()

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2015-0283
[1] https://bugzilla.redhat.com/show_bug.cgi?id=1195729

Regards,
Salvatore



More information about the Pkg-freeipa-devel mailing list