[Secure-testing-commits] r9939 - / data data/CVE

white at alioth.debian.org white at alioth.debian.org
Thu Oct 2 12:00:37 UTC 2008


Author: white
Date: 2008-10-02 12:00:32 +0000 (Thu, 02 Oct 2008)
New Revision: 9939

Modified:
   data/CVE/list
   data/spu-candidates.txt
   tmp.txt
Log:
temp file issue in game sabre is minor

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-10-02 11:52:11 UTC (rev 9938)
+++ data/CVE/list	2008-10-02 12:00:32 UTC (rev 9939)
@@ -13,6 +13,7 @@
 	[etch] - gdrae <no-dsa> (Minor issue)
 CVE-2008-XXXX [sabre: insecure temp file]
 	- sabre <unfixed> (low; bug #433996)
+	[etch] - sabre <no-dsa> (Game not qualified as multi-user system, thus minor issue)
 	NOTE: CVE id requested
 CVE-2008-4366 (Unrestricted file upload vulnerability in the image upload component ...)
 	NOT-FOR-US: Camera Life

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2008-10-02 11:52:11 UTC (rev 9938)
+++ data/spu-candidates.txt	2008-10-02 12:00:32 UTC (rev 9939)
@@ -236,6 +236,12 @@
 notified maintainer
 
 --
+
+sabre 
+#433996
+
+--
+
 sip-tester (CVE-2008-1959, CVE-2008-2085)
 #479039
 notified maintainer

Modified: tmp.txt
===================================================================
--- tmp.txt	2008-10-02 11:52:11 UTC (rev 9938)
+++ tmp.txt	2008-10-02 12:00:32 UTC (rev 9939)
@@ -96,6 +96,7 @@
  Binary-package: sng (1.0.2-5)
  Binary-package: cdcontrol (1.90-1.1)
  Binary-package: apertium (3.0.7+1-1+b1)
+ Binary-package: xsabre (0.2.4b-23)
 
 
 Non-issues (not exploitable, only examples or very exotic use cases,




More information about the Secure-testing-commits mailing list