adjusted changelog entry to mention CVE explicitely

debian-releases/etch
Yaroslav Halchenko 17 years ago
parent 41455bda75
commit a4a03e5e63

6
debian/changelog vendored

@ -12,9 +12,9 @@ fail2ban (0.7.5-2etch1~pre4) stable-security; urgency=low
possible DoS
* Rigid call to python2.4 instead of via /usr/bin/env to prevent
in-the-middle attack via environment poisoning
* Anchored sshd and vsftpd failregex at the end of line to prevent DoS on
those services, which is related to CVE-2007-4321 and closed in sid
438187.
* CVE-2007-4321: anchored sshd and vsftpd failregex at the end of line
to prevent DoS on those services. This issue was resolved in sid's version
0.8.0-4 (bugreport 438187).
-- Yaroslav Halchenko <debian@onerussian.com> Tue, 01 May 2007 22:18:03 -0400

Loading…
Cancel
Save