[Secure-testing-commits] r959 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Mon, 02 May 2005 08:17:08 +0000


Author: jmm-guest
Date: 2005-05-02 08:17:05 +0000 (Mon, 02 May 2005)
New Revision: 959

Modified:
   sarge-checks/CAN/list
Log:
bugnum for visudo tmp race.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-02 07:31:35 UTC (rev 958)
+++ sarge-checks/CAN/list	2005-05-02 08:17:05 UTC (rev 959)
@@ -653,9 +653,7 @@
 CAN-2005-1120 (Multiple cross-site scripting (XSS) vulnerabilities in IlohaMail ...)
 	- ilohamail (unfixed; bug #304525)
 CAN-2005-1119 (Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary ...)
-	TODO: Somehow related bug 283161, but file a proper one, unfortunately information
-	TODO: is very sparse
-	- sudo (unfixed)
+	- sudo (unfixed; bug #283161)
 CAN-2005-1118 (Cross-site scripting (XSS) vulnerability in IISWebAgentIF.dll in the ...)
 	NOTE: not-for-us (RSA authentication agent)
 CAN-2005-1117 (PHP remote code injection vulnerability in index.php in ...)