Bug#760476: concerning 760476

Andreas Metzler ametzler at bebt.de
Tue Oct 28 18:11:28 UTC 2014


Control: reassign -1 cups 1.7.5-1

On 2014-10-28 Nikos Mavrogiannopoulos <nmav at gnutls.org> wrote:
> Hello,
>  I think that the bug:
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=760476

> is more serious than it seems. By cups closing gnutls' /dev/urandom
> descriptor it makes gnutls to read from whatever file is open and has
> the same descriptor number in order to fill its random pool. In the
> reported case we were lucky that the descriptor didn't allow read and
> the issue was detected. 

> I think that the issue should be reassigned to cups and it should be
> modified to close the known file descriptors (stdin/stdout/stderr)
> instead of all open descriptors.
[...]

Thanks for the explanation. re-assigning. (I will subscribe to the
bug-report to keep me updated)

cu Andreas
-- 
`What a good friend you are to him, Dr. Maturin. His other friends are
so grateful to you.'
`I sew his ears on from time to time, sure'



More information about the Pkg-gnutls-maint mailing list