[Secure-testing-commits] r5492 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Tue Feb 27 23:03:09 UTC 2007


Author: stef-guest
Date: 2007-02-28 00:03:05 +0100 (Wed, 28 Feb 2007)
New Revision: 5492

Modified:
   data/CVE/list
Log:
- new linux issue
- new apache issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-02-27 22:49:33 UTC (rev 5491)
+++ data/CVE/list	2007-02-27 23:03:05 UTC (rev 5492)
@@ -1,3 +1,7 @@
+CVE-2007-XXXX [apache does not use setsid() to detach from controlling tty ]
+	- apache <unfixed> (bug #357561)
+CVE-2007-XXXX [vserver patch allows renice of processes in different context]
+	- linux-2.6 <unfixed> (bug #412143)
 CVE-2007-XXXX [apg generates insecure passwords on 64-bit architectures]
         - apg <unfixed> (bug #412618)
 	NOTE: This is not reproducible after a recompile on amd64.




More information about the Secure-testing-commits mailing list