2010-11-06 19:46:52 |
Eduard Carreras i Nadal |
bug |
|
|
added bug |
2010-11-06 19:46:52 |
Eduard Carreras i Nadal |
attachment added |
|
Exploit server https://bugs.launchpad.net/bugs/671926/+attachment/1725050/+files/exploit-server.py |
|
2010-11-06 19:52:00 |
Eduard Carreras i Nadal |
branch linked |
|
lp:openobject-client |
|
2010-11-06 19:52:19 |
Eduard Carreras i Nadal |
branch linked |
|
lp:openobject-client/5.0 |
|
2010-11-06 19:52:31 |
Eduard Carreras i Nadal |
branch linked |
|
lp:openobject-client/4.2 |
|
2010-12-09 11:15:01 |
Eduard Carreras i Nadal |
visibility |
private |
public |
|
2010-12-09 11:56:01 |
Stephane Wirtel (OpenERP) |
openobject-client: importance |
Undecided |
Critical |
|
2010-12-09 11:56:06 |
Stephane Wirtel (OpenERP) |
openobject-client: status |
New |
Confirmed |
|
2010-12-09 11:56:11 |
Stephane Wirtel (OpenERP) |
openobject-client: assignee |
|
Stephane Wirtel (OpenERP) (stephane-openerp) |
|
2010-12-09 11:56:14 |
Stephane Wirtel (OpenERP) |
openobject-client: milestone |
|
6.0-rc2 |
|
2010-12-09 11:56:43 |
Stephane Wirtel (OpenERP) |
attachment added |
|
patch_tiny_socket.diff https://bugs.launchpad.net/openobject-client/+bug/671926/+attachment/1760717/+files/patch_tiny_socket.diff |
|
2010-12-09 12:00:34 |
Olivier Dony (Odoo) |
nominated for series |
|
openobject-client/5.0 |
|
2010-12-09 12:00:34 |
Olivier Dony (Odoo) |
bug task added |
|
openobject-client/5.0 |
|
2010-12-09 12:00:52 |
Olivier Dony (Odoo) |
openobject-client/5.0: importance |
Undecided |
Critical |
|
2010-12-09 12:00:52 |
Olivier Dony (Odoo) |
openobject-client/5.0: status |
New |
Confirmed |
|
2010-12-09 12:00:52 |
Olivier Dony (Odoo) |
openobject-client/5.0: milestone |
|
5.0.16 |
|
2010-12-09 12:01:44 |
Olivier Dony (Odoo) |
tags |
pickle security |
maintenance pickle security |
|
2010-12-09 12:03:53 |
Olivier Dony (Odoo) |
bug task added |
|
openobject-client-web |
|
2010-12-09 12:06:32 |
Olivier Dony (Odoo) |
openobject-client-web: importance |
Undecided |
Critical |
|
2010-12-09 12:06:32 |
Olivier Dony (Odoo) |
openobject-client-web: status |
New |
Confirmed |
|
2010-12-09 12:06:32 |
Olivier Dony (Odoo) |
openobject-client-web: milestone |
|
6.0-rc2 |
|
2010-12-09 12:06:32 |
Olivier Dony (Odoo) |
openobject-client-web: assignee |
|
Stephane Wirtel (OpenERP) (stephane-openerp) |
|
2010-12-09 12:07:01 |
Olivier Dony (Odoo) |
nominated for series |
|
openobject-client-web/5.0 |
|
2010-12-09 12:07:01 |
Olivier Dony (Odoo) |
bug task added |
|
openobject-client-web/5.0 |
|
2010-12-09 12:07:25 |
Olivier Dony (Odoo) |
openobject-client-web/5.0: importance |
Undecided |
Critical |
|
2010-12-09 12:07:25 |
Olivier Dony (Odoo) |
openobject-client-web/5.0: status |
New |
Confirmed |
|
2010-12-09 12:07:25 |
Olivier Dony (Odoo) |
openobject-client-web/5.0: milestone |
|
5.0.16 |
|
2010-12-09 12:07:25 |
Olivier Dony (Odoo) |
openobject-client-web/5.0: assignee |
|
Stephane Wirtel (OpenERP) (stephane-openerp) |
|
2010-12-09 12:07:55 |
Olivier Dony (Odoo) |
openobject-client/5.0: assignee |
|
Stephane Wirtel (OpenERP) (stephane-openerp) |
|
2010-12-09 12:21:53 |
Stephane Wirtel (OpenERP) |
attachment added |
|
Add the missing cStringIO import https://bugs.launchpad.net/openobject-client/+bug/671926/+attachment/1760728/+files/patch_tiny_socket2.diff |
|
2010-12-09 12:26:12 |
Olivier Dony (Odoo) |
attachment removed |
patch_tiny_socket.diff https://bugs.launchpad.net/openobject-client-web/5.0/+bug/671926/+attachment/1760717/+files/patch_tiny_socket.diff |
|
|
2010-12-09 12:26:28 |
Olivier Dony (Odoo) |
attachment removed |
Add the missing cStringIO import https://bugs.launchpad.net/openobject-client-web/5.0/+bug/671926/+attachment/1760728/+files/patch_tiny_socket2.diff |
|
|
2010-12-09 12:27:47 |
Stephane Wirtel (OpenERP) |
attachment added |
|
patch_tiny_socket.diff https://bugs.launchpad.net/openobject-client/+bug/671926/+attachment/1760729/+files/patch_tiny_socket.diff |
|
2010-12-09 15:40:05 |
Olivier Dony (Odoo) |
summary |
Remote code execution |
Malicious servers could trigger code execution on clients using NET-RPC |
|
2010-12-09 15:47:48 |
Olivier Dony (Odoo) |
summary |
Malicious servers could trigger code execution on clients using NET-RPC |
NET-RPC client-side stack should sanitize pickled data |
|
2011-01-18 17:45:29 |
David Diz |
bug |
|
|
added subscriber David Diz |
2011-01-28 16:37:47 |
snook |
bug |
|
|
added subscriber snook |
2011-02-04 08:33:55 |
Olivier Dony (Odoo) |
openobject-client-web: milestone |
6.0-rc2 |
6.0.2 |
|
2011-02-04 08:33:55 |
Olivier Dony (Odoo) |
openobject-client-web: assignee |
Stephane Wirtel (OpenERP) (stephane-openerp) |
OpenERP SA's Web Client R&D (openerp-dev-web) |
|
2011-02-04 08:34:30 |
Olivier Dony (Odoo) |
openobject-client: milestone |
6.0-rc2 |
6.0.2 |
|
2011-02-04 08:34:30 |
Olivier Dony (Odoo) |
openobject-client: assignee |
Stephane Wirtel (OpenERP) (stephane-openerp) |
OpenERP sa GTK client R&D (openerp-dev-gtk) |
|
2011-07-01 11:30:06 |
Naresh(OpenERP) |
openobject-client: status |
Confirmed |
In Progress |
|
2011-07-04 05:44:38 |
Launchpad Janitor |
branch linked |
|
lp:~openerp-dev/openobject-client/trunk-bug-671926-nch |
|
2011-07-04 05:46:14 |
Naresh(OpenERP) |
openobject-client: status |
In Progress |
Fix Committed |
|
2011-07-13 10:13:26 |
Naresh(OpenERP) |
openobject-client: status |
Fix Committed |
Fix Released |
|
2011-09-06 10:30:32 |
Antony Lesuisse (OpenERP) |
openobject-client-web: status |
Confirmed |
Won't Fix |
|
2011-09-06 10:30:40 |
Antony Lesuisse (OpenERP) |
openobject-client-web/5.0: status |
Confirmed |
Won't Fix |
|