[Secure-testing-commits] r23296 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Mon Aug 12 18:53:50 UTC 2013


Author: carnil
Date: 2013-08-12 18:53:49 +0000 (Mon, 12 Aug 2013)
New Revision: 23296

Modified:
   data/CVE/list
Log:
add (unchecked) CVE-2013-4237 for eglibc

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-12 18:49:40 UTC (rev 23295)
+++ data/CVE/list	2013-08-12 18:53:49 UTC (rev 23296)
@@ -1848,8 +1848,12 @@
 	RESERVED
 CVE-2013-4238
 	RESERVED
-CVE-2013-4237
+CVE-2013-4237 [Buffer overwrite when using readdir_r on file systems returning file names longer than NAME_MAX characters]
 	RESERVED
+	- eglibc <unfixed>
+	NOTE: http://sourceware.org/bugzilla/show_bug.cgi?id=14699
+	NOTE: http://sourceware.org/ml/libc-alpha/2013-05/msg00445.html
+	TODO: check
 CVE-2013-4236
 	RESERVED
 	NOT-FOR-US: Red Hat vdms




More information about the Secure-testing-commits mailing list