[Secure-testing-commits] r11675 - data/CVE

Thijs Kinkhorst thijs at alioth.debian.org
Tue Apr 21 10:54:12 UTC 2009


Author: thijs
Date: 2009-04-21 10:54:12 +0000 (Tue, 21 Apr 2009)
New Revision: 11675

Modified:
   data/CVE/list
Log:
add git-core issue and bug number


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-04-21 10:31:51 UTC (rev 11674)
+++ data/CVE/list	2009-04-21 10:54:12 UTC (rev 11675)
@@ -1,3 +1,5 @@
+CVE-2009-XXXX [git-core in Debian has non-root-owned files under /usr]
+	- git-core 1.6.2.1-1 (bug #516669)
 CVE-2009-1341
 	RESERVED
 CVE-2009-1340
@@ -28,7 +30,7 @@
 CVE-2009-XXXX [pptp-linux: unrestrictive pptpsetup permissions]
 	- pptp-linux <unfixed> (low; bug #523476)
 CVE-2009-XXXX [slurm-llnl doesn't drop supplementary groups]
-	- slumn-llnl 1.3.15-1
+	- slumn-llnl 1.3.15-1 (bug #524980)
 CVE-2009-1330 (Stack-based buffer overflow in Easy RM to MP3 Converter allows remote ...)
 	NOT-FOR-US: Easy RM to MP3 Converter
 CVE-2009-1329 (Stack-based buffer overflow in Mini-stream Shadow Stream Recorder ...)




More information about the Secure-testing-commits mailing list