[Secure-testing-commits] r8553 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Thu Apr 17 19:30:53 UTC 2008


Author: nion
Date: 2008-04-17 19:30:51 +0000 (Thu, 17 Apr 2008)
New Revision: 8553

Modified:
   data/CVE/list
Log:
two new aptlinex issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-04-17 17:03:24 UTC (rev 8552)
+++ data/CVE/list	2008-04-17 19:30:51 UTC (rev 8553)
@@ -1,3 +1,10 @@
+CVE-2008-XXXX [insecure tmp file handling in aptlinex]
+	- aptlinex <unfixed> (low; bug #476588)
+	NOTE: CVE id requested
+CVE-2008-XXXX [remove/install packages via crafted links or run]
+	- aptlinex <unfixed> (low; bug #476572)
+	NOTE: the user gets a confirmation dialog
+	NOTE: CVE id requested
 CVE-2008-1831 (Multiple unspecified vulnerabilities in the Siebel SimBuilder ...)
 	NOT-FOR-US: Oracle Siebel Enterprise
 CVE-2008-1830 (Unspecified vulnerability in the PeopleSoft HCM ePerformance component ...)




More information about the Secure-testing-commits mailing list