Vulnerability Bulletins

DSA-3956 connman - security update

   
Affected software Debian
 
Security consultants in NRI Secure Technologies discovered a stackoverflow vulnerability in ConnMan, a network manager for embeddeddevices. An attacker with control of the DNS responses to the DNS proxyin ConnMan might crash the service and, in same cases, remotely executearbitrary commands in the host running the service.

More info:

https://www.debian.org/security/2017/dsa-3956