[Secure-testing-commits] r9916 - data/CVE
alfie at alioth.debian.org
alfie at alioth.debian.org
Wed Oct 1 13:32:28 UTC 2008
Author: alfie
Date: 2008-10-01 13:32:27 +0000 (Wed, 01 Oct 2008)
New Revision: 9916
Modified:
data/CVE/list
Log:
Another temp symlink attack, possible to become a root issue
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2008-10-01 13:13:54 UTC (rev 9915)
+++ data/CVE/list 2008-10-01 13:32:27 UTC (rev 9916)
@@ -1,3 +1,5 @@
+CVE-2008-XXXX [sabre: insecure temp file]
+ - sabre 0.2.4b-23 (low; bug #433996)
CVE-2008-4366 (Unrestricted file upload vulnerability in the image upload component ...)
NOT-FOR-US: Camera Life
CVE-2008-4365 (Cross-site scripting (XSS) vulnerability in search.php in Siteman ...)
More information about the Secure-testing-commits
mailing list