[Secure-testing-commits] r16800 - data/CVE

Luciano Bello luciano at alioth.debian.org
Sat Jun 11 23:53:21 UTC 2011


Author: luciano
Date: 2011-06-11 23:53:21 +0000 (Sat, 11 Jun 2011)
New Revision: 16800

Modified:
   data/CVE/list
Log:
libpam-ssh minor issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-06-11 18:42:22 UTC (rev 16799)
+++ data/CVE/list	2011-06-11 23:53:21 UTC (rev 16800)
@@ -1,3 +1,10 @@
+CVE-2011-XXXX [libpam-ssh: pam_ssh not dropping root gid(s)]
+    - libpam-ssh <unfixed> (low)
+    [squeeze] - libpam-ssh <no-dsa> (Minor issue) 
+    [lenny] - libpam-ssh <no-dsa> (Minor issue) 
+    NOTE: https://bugzilla.novell.com/show_bug.cgi?id=665061
+    NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=711170
+    NOTE: CVE request and discussion: http://www.openwall.com/lists/oss-security/2011/06/06/3
 CVE-2011-2185 [fabric insecure temp files]
 	- fabric <unfixed> (low; bug #629003)
 	[squeeze] - fabric <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list