PublicDate: 2008-05-13 23:20:00 UTC Candidate: CVE-2008-1922 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1922 Description: Multiple stack-based buffer overflows in Sarg might allow attackers to execute arbitrary code via unknown vectors, probably a crafted Squid log file. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/bugs/236769 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_sarg: vendor: http://lists.opensuse.org/opensuse-security-announce/2008-05/msg00000.html debdiff: https://bugs.launchpad.net/ubuntu/+source/sarg/+bug/236769 upstream_sarg: released (2.2.5-2) dapper_sarg: ignored (reached end-of-life) feisty_sarg: needed (reached end-of-life) gutsy_sarg: needed (reached end-of-life) hardy_sarg: released (2.2.5-1ubuntu0.8.04.1) intrepid_sarg: released (2.2.5-1ubuntu0.8.10.1) jaunty_sarg: not-affected (2.2.5-2) karmic_sarg: not-affected devel_sarg: not-affected