X-Git-Url: http://pileus.org/git/?a=blobdiff_plain;f=fetchmail-SA-2011-01.txt;h=267513110a1af598f7dc9eb16efd883b0101110d;hb=87dc71c7c26e8532b19b55f58e2786f9af53f2e3;hp=6e01ddab9c84e5583a99c11050a43b6a14c1eb6c;hpb=7a0dfb8daf1a1111083c734f4506f2bd48f14e52;p=~andy%2Ffetchmail diff --git a/fetchmail-SA-2011-01.txt b/fetchmail-SA-2011-01.txt index 6e01ddab..26751311 100644 --- a/fetchmail-SA-2011-01.txt +++ b/fetchmail-SA-2011-01.txt @@ -1,3 +1,6 @@ +-----BEGIN PGP SIGNED MESSAGE----- +Hash: SHA1 + fetchmail-SA-2011-01: Denial of service possible in STARTTLS mode Topics: fetchmail denial of service in STARTTLS protocol phases @@ -8,6 +11,7 @@ Announced: 2011-06-06 Type: Unguarded blocking I/O can cause indefinite application hang Impact: Denial of service Danger: low +Acknowledgment: Thomas Jarosch for sending detailed report CVE Name: CVE-2011-1947 CVSSv2: (AV:N/AC:M/Au:S/C:N/I:N/A:C/E:U/RL:O/RC:C) @@ -110,15 +114,17 @@ A. Copyright, License and Non-Warranty (C) Copyright 2011 by Matthias Andree, . Some rights reserved. -This work is licensed under the Creative Commons -Attribution-Noncommercial-No Derivative Works 3.0 Germany License. +This work is licensed under the +Creative Commons Attribution-NoDerivs 3.0 Germany License (CC BY-ND 3.0). + To view a copy of this license, visit -http://creativecommons.org/licenses/by-nc-nd/3.0/de/ or send a letter to +http://creativecommons.org/licenses/by-nd/3.0/de/deed.en +or send a letter to: Creative Commons -171 Second Street -Suite 300 -SAN FRANCISCO, CALIFORNIA 94105 +444 Castro Street +Suite 900 +MOUNTAIN VIEW, CALIFORNIA 94041 USA @@ -126,3 +132,10 @@ THIS WORK IS PROVIDED FREE OF CHARGE AND WITHOUT ANY WARRANTIES. Use the information herein at your own risk. END of fetchmail-SA-2011-01 +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v1.4.11 (GNU/Linux) + +iEYEARECAAYFAk9/Yg4ACgkQvmGDOQUufZUICACg5GqwtyAFuOamJ3JtribzMe9U +k20AnRLlwx4HBC/Gk3AX1dWSrrQc8WYB +=GFzg +-----END PGP SIGNATURE-----