[Secure-testing-commits] r38518 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 25 07:51:43 UTC 2015


Author: carnil
Date: 2015-12-25 07:51:43 +0000 (Fri, 25 Dec 2015)
New Revision: 38518

Modified:
   data/CVE/list
Log:
Revert "Add fixed version for CVE-2015-5602/sudo, #804149"

This reverts commit d6f095b850642c2e2d85a672e46e1407dd9f098e.

The issue isn't actually fixed, see reporting by Ben Hutchings in
https://bugs.debian.org/804149#52

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-12-25 07:46:04 UTC (rev 38517)
+++ data/CVE/list	2015-12-25 07:51:43 UTC (rev 38518)
@@ -10526,7 +10526,7 @@
 CVE-2015-5603 (The HipChat for JIRA plugin before 6.30.0 for Atlassian JIRA allows ...)
 	NOT-FOR-US: HipChat plugin
 CVE-2015-5602 (sudoedit in Sudo before 1.8.15 allows local users to gain privileges ...)
-	- sudo 1.8.15-1 (bug #804149)
+	- sudo <unfixed> (bug #804149)
 	NOTE: http://bugzilla.sudo.ws/show_bug.cgi?id=707
 	NOTE: http://www.sudo.ws/repos/sudo/rev/9636fd256325
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1277426




More information about the Secure-testing-commits mailing list