[Secure-testing-commits] r9584 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Fri Aug 15 12:15:27 UTC 2008


Author: nion
Date: 2008-08-15 12:15:25 +0000 (Fri, 15 Aug 2008)
New Revision: 9584

Modified:
   data/CVE/list
Log:
lowering impact, created with 0600 and O_EXCL, still unsafe if used with -u

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-08-15 11:50:50 UTC (rev 9583)
+++ data/CVE/list	2008-08-15 12:15:25 UTC (rev 9584)
@@ -1,5 +1,5 @@
 CVE-2008-XXXX [mktemp doesn't produce fully random names]
-	- mktemp <unfixed> (medium; bug #495193)
+	- mktemp <unfixed> (low; bug #495193)
 	NOTE: CVE id requested
 CVE-2008-XXXX [drupal XSS]
 	- drupal5 5.10-1 (low; bug #495122)




More information about the Secure-testing-commits mailing list