This bug was fixed in the package cvs - 1:1.12.13-12ubuntu1
--------------- cvs (1:1.12.13-12ubuntu1) jaunty; urgency=low
* debian/patches/99ubuntu001-no-snprintf.diff: Don't build vasnprintf strings with snprintf to avoid %n in writable memory (LP: #296453).
-- Kees Cook <email address hidden> Mon, 10 Nov 2008 15:01:40 -0800
This bug was fixed in the package cvs - 1:1.12.13-12ubuntu1
--------------- 13-12ubuntu1) jaunty; urgency=low
cvs (1:1.12.
* debian/ patches/ 99ubuntu001- no-snprintf. diff: Don't build vasnprintf
strings with snprintf to avoid %n in writable memory (LP: #296453).
-- Kees Cook <email address hidden> Mon, 10 Nov 2008 15:01:40 -0800