[Pkg-xmpp-devel] Bug#1004173: prosody: Regression from CVE-2022-0217: memory leak

Salvatore Bonaccorso carnil at debian.org
Sat Jan 22 08:31:37 GMT 2022


Source: prosody
Version: 0.11.12-1
Severity: important
Tags: upstream
X-Debbugs-Cc: carnil at debian.org, Debian Security Team <team at security.debian.org>
Control: found -1 0.11.2-1+deb10u3
Control: found -1 0.11.9-2+deb11u1
Control: affects -1 security.debian.org,release.debian.org

Hi,

https://www.openwall.com/lists/oss-security/2022/01/20/4 mentions a
regression from the security fix for CVE-2022-0217.

Fixing commit: https://hg.prosody.im/trunk/rev/e5e0ab93d7f4

Regards,
Salvatore



More information about the Pkg-xmpp-devel mailing list