• Bug#1068457: marked as pending in azure-uamqp-python

    From Thomas Goirand@21:1/5 to All on Wed Apr 17 14:30:01 2024
    Control: tag -1 pending

    Hello,

    Bug #1068457 in azure-uamqp-python reported by you has been fixed in the
    Git repository and is awaiting an upload. You can see the commit
    message below and you can check the diff of the fix at:

    https://salsa.debian.org/python-team/packages/azure-uamqp-python/-/commit/f4f79087f50551619f9659594ecf7f08f6acb952

    ------------------------------------------------------------------------
    * CVE-2024-29195: An attacker can cause an integer wraparound or under-
    allocation or heap buffer overflow due to vulnerabilities in parameter
    checking mechanism, by exploiting the buffer length parameter in Azure C
    SDK, which may lead to remote code execution. Applied upstream patch:
    CVE-2024-29195_Add-malloc-size-checks.patch (Closes: #1068457). ------------------------------------------------------------------------

    (this message was generated automatically)
    --
    Greetings

    https://bugs.debian.org/1068457

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)