• [SECURITY] [DSA 3527-1] inspircd security update

    From Sebastien Delafond@1:229/2 to All on Thu Mar 24 08:50:02 2016
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-3527-1 [email protected] https://www.debian.org/security/ Sebastien Delafond
    March 24, 2016 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : inspircd
    CVE ID : CVE-2015-8702

    It was discovered that inspircd, an IRC daemon, incorrectly handled
    PTR lookups of connecting users. This flaw allowed a remote attacker
    to crash the application by setting up malformed DNS records, thus
    causing a denial-of-service,

    For the oldstable distribution (wheezy), this problem has been fixed
    in version 2.0.5-1+deb7u2.

    For the stable distribution (jessie), this problem has been fixed in
    version 2.0.17-1+deb8u1.

    For the testing (stretch) and unstable (sid) distributions, this
    problem has been fixed in version 2.0.20-1.

    We recommend that you upgrade your inspircd packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v2

    iQEcBAEBCgAGBQJW85UvAAoJEBC+iYPz1Z1kh1IIAJ0Go3vdSFCn5t1pNoIx74gz moyNU+eHCgG02EjTBxpSZ+6b0I6F7ijjzkIiv9vJsuCrPrjgmJwdM+/l544K+EQC 6hEBAYkA9n6TwF+FXUhpIEm9SVVrTxwJYoJIpsz35reLqy8YWIKhPlWdxc+6m6uH NzLiOkVHIXbyQtFS9ZgibZM2qv6sN3TNmJ0EFnl6RbuQKDXHWhSluW5pCJcZDwq2 t/P244qVXKRTQS9aZ4oXrCOOzGN9vlz1PVu5olS67S2T9zIAf8UaN7toWB9N8pSF hfwCw1DXjYfX4utEKKTE9NJTBW76r8txf+IKksbvD1AeUoamIWVZ9mdyEXIeYqo=
    =VCu9
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)