[Secure-testing-commits] r24307 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Wed Nov 6 07:03:30 UTC 2013


Author: carnil
Date: 2013-11-06 07:03:30 +0000 (Wed, 06 Nov 2013)
New Revision: 24307

Modified:
   data/CVE/list
Log:
Add CVE-2013-1418/krb5, part of external check

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-06 07:00:33 UTC (rev 24306)
+++ data/CVE/list	2013-11-06 07:03:30 UTC (rev 24307)
@@ -13473,8 +13473,12 @@
 	RESERVED
 CVE-2013-1419
 	RESERVED
-CVE-2013-1418
+CVE-2013-1418 [multi-realm KDC null dereference leads to crash]
 	RESERVED
+	- krb5 <unfixed>
+	NOTE: http://krbdev.mit.edu/rt/Ticket/Display.html?id=7757
+	NOTE: https://github.com/krb5/krb5/commit/5d2d9a1abe46a2c1a8614d4672d08d9d30a5f8bf
+	TODO: check
 CVE-2013-1417
 	RESERVED
 CVE-2013-1416 (The prep_reprocess_req function in do_tgs_req.c in the Key ...)




More information about the Secure-testing-commits mailing list