File _patchinfo of Package patchinfo.3681

<patchinfo incident="3681">
  <issue id="924933" tracker="bnc">VUL-0: CVE-2015-2779: quassel: incorrect message splitting leading to DoS</issue>
  <issue id="924930" tracker="bnc">VUL-0: CVE-2015-2778: quassel: core crash caused by sending an overlength CTCP query containing only multibyte characters.</issue>
  <issue id="CVE-2015-2779" tracker="cve" />
  <issue id="CVE-2015-2778" tracker="cve" />
  <category>security</category>
  <rating>moderate</rating>
  <packager>scarabeus_iv</packager>
  <description>The IRC client quassel was updated to fix two security issues.

The following vulnerabilities were fixed:

* quassel could crash when receiving an overlength CTCP query containing only multibyte characters (bnc#924930 CVE-2015-2778)
* quassel could incorrectly split a message in the middle of a multibyte character, leading to DoS (bnc#924933 CVE-2015-2779)
</description>
  <summary>Security update for quassel</summary>
</patchinfo>
openSUSE Build Service is sponsored by