[bug 478331]: Attention libical users

Callum Lerwick seg at haxxed.com
Tue Jan 6 18:07:47 UTC 2009


On Tue, 2009-01-06 at 19:35 +0530, Debarshi Ray wrote:
> I would like to draw the attention of those who are maintaining
> packages depending on libical to a bug [1] that causes applications to
> crash if invalid input is fed to libical. This includes Sunbird, KDE
> PIM, Osmo, probably Evolution and maybe some more (no access to
> repoquery for me now).

That sounds like the definition of denial of service vulnerability. I
put further comments on the bug. :)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: This is a digitally signed message part
URL: <http://listman.redhat.com/archives/fedora-devel-list/attachments/20090106/3acadab3/attachment.sig>


More information about the fedora-devel-list mailing list