[Secure-testing-commits] r792 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Tue, 12 Apr 2005 08:34:51 +0000


Author: jmm-guest
Date: 2005-04-12 08:34:48 +0000 (Tue, 12 Apr 2005)
New Revision: 792

Modified:
   sarge-checks/CAN/list
Log:
rsnapshot symlink handling vulnerability.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-12 08:25:30 UTC (rev 791)
+++ sarge-checks/CAN/list	2005-04-12 08:34:48 UTC (rev 792)
@@ -1,3 +1,5 @@
+CAN-2005-XXXX [Incorrect symlink permission handling in rsnapshot]
+	- rsnapshot (unfixed)
 CAN-2005-XXXX [Variable function calls in Smarty allow bypassing security settings]
 	- smarty 2.6.9-1
 CAN-2005-XXXX [Possible problem with insecure usage of sscanf in obexftp client]