summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorNed Ludd <solar@gentoo.org>2004-06-30 00:06:18 +0000
committerNed Ludd <solar@gentoo.org>2004-06-30 00:06:18 +0000
commitd66b8cf417e0c65bc2ceab1c7fc21a3d85f98e77 (patch)
tree92236a6d2c9018b43dc561050045e4fb369284a3 /net-misc/pavuk/metadata.xml
parentRollback till the new gs is fixed on ppc (Manifest recommit) (diff)
downloadgentoo-2-d66b8cf417e0c65bc2ceab1c7fc21a3d85f98e77.tar.gz
gentoo-2-d66b8cf417e0c65bc2ceab1c7fc21a3d85f98e77.tar.bz2
gentoo-2-d66b8cf417e0c65bc2ceab1c7fc21a3d85f98e77.zip
Security update. When pavuk connects to a web server and the server sends back the HTTP status code 305 (Use Proxy), pavuk copies data from the HTTP Location header in an unsafe manner. This leads to a stack-based buffer overflow with control over EIP.
Diffstat (limited to 'net-misc/pavuk/metadata.xml')
-rw-r--r--net-misc/pavuk/metadata.xml8
1 files changed, 8 insertions, 0 deletions
diff --git a/net-misc/pavuk/metadata.xml b/net-misc/pavuk/metadata.xml
new file mode 100644
index 000000000000..fcd98e81bcd5
--- /dev/null
+++ b/net-misc/pavuk/metadata.xml
@@ -0,0 +1,8 @@
+<?xml version="1.0" encoding="UTF-8"?>
+<!DOCTYPE pkgmetadata SYSTEM "http://www.gentoo.org/dtd/metadata.dtd">
+<pkgmetadata>
+<herd>no-herd</herd>
+<maintainer>
+ <email>bug-wranglers@gentoo.org</email>
+</maintainer>
+</pkgmetadata>