[Secure-testing-commits] r1251 - data/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Mon, 20 Jun 2005 17:41:23 +0000


Author: jmm-guest
Date: 2005-06-20 17:41:20 +0000 (Mon, 20 Jun 2005)
New Revision: 1251

Modified:
   data/CAN/list
Log:
new sudo issue


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-06-20 13:26:32 UTC (rev 1250)
+++ data/CAN/list	2005-06-20 17:41:20 UTC (rev 1251)
@@ -1,3 +1,5 @@
+CAN-2005-XXXX [Race condition in sudo's pathname validation]
+	- sudo (unfixed; bug #315115; medium)
 CAN-2005-XXXX [Arbitrary command execution in Ruby's XMLRPC code]
 	- ruby1.8 (unfixed; bug #315064; medium)
 CAN-2005-XXXX [buffer overflow in heimdal's getterminaltype() function]